Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2014-9721

Опубликовано: 03 июн. 2015
Источник: debian
EPSS Низкий

Описание

libzmq before 4.0.6 and 4.1.x before 4.1.1 allows remote attackers to conduct downgrade attacks and bypass ZMTP v3 protocol security mechanisms via a ZMTP v2 or earlier header.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
zeromq3fixed4.0.5+dfsg-3package

Примечания

  • https://github.com/zeromq/libzmq/issues/1273

  • https://github.com/zeromq/zeromq4-x/commit/b6e3e0f601e2c1ec1f3aac880ed6a3fe63043e51

  • https://www.openwall.com/lists/oss-security/2015/05/07/8

EPSS

Процентиль: 83%
0.02529
Низкий

Связанные уязвимости

ubuntu
около 11 лет назад

libzmq before 4.0.6 and 4.1.x before 4.1.1 allows remote attackers to conduct downgrade attacks and bypass ZMTP v3 protocol security mechanisms via a ZMTP v2 or earlier header.

redhat
больше 11 лет назад

libzmq before 4.0.6 and 4.1.x before 4.1.1 allows remote attackers to conduct downgrade attacks and bypass ZMTP v3 protocol security mechanisms via a ZMTP v2 or earlier header.

nvd
около 11 лет назад

libzmq before 4.0.6 and 4.1.x before 4.1.1 allows remote attackers to conduct downgrade attacks and bypass ZMTP v3 protocol security mechanisms via a ZMTP v2 or earlier header.

suse-cvrf
почти 11 лет назад

Security update for zeromq

github
около 4 лет назад

libzmq before 4.0.6 and 4.1.x before 4.1.1 allows remote attackers to conduct downgrade attacks and bypass ZMTP v3 protocol security mechanisms via a ZMTP v2 or earlier header.

EPSS

Процентиль: 83%
0.02529
Низкий