Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2016-4484

Опубликовано: 23 янв. 2017
Источник: debian
EPSS Низкий

Описание

The Debian initrd script for the cryptsetup package 2:1.7.3-2 and earlier allows physically proximate attackers to gain shell access via many log in attempts with an invalid password.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
cryptsetupfixed2:1.7.3-2package

Примечания

  • http://hmarco.org/bugs/CVE-2016-4484/CVE-2016-4484_cryptsetup_initrd_shell.html

  • Negligible security impact

  • in #860981 claimed to still be unresolved as per 2:1.7.3-3

EPSS

Процентиль: 51%
0.00709
Низкий

Связанные уязвимости

CVSS3: 6.8
ubuntu
больше 9 лет назад

The Debian initrd script for the cryptsetup package 2:1.7.3-2 and earlier allows physically proximate attackers to gain shell access via many log in attempts with an invalid password.

CVSS3: 6.8
redhat
почти 10 лет назад

The Debian initrd script for the cryptsetup package 2:1.7.3-2 and earlier allows physically proximate attackers to gain shell access via many log in attempts with an invalid password.

CVSS3: 6.8
nvd
больше 9 лет назад

The Debian initrd script for the cryptsetup package 2:1.7.3-2 and earlier allows physically proximate attackers to gain shell access via many log in attempts with an invalid password.

CVSS3: 6.8
github
больше 4 лет назад

The Debian initrd script for the cryptsetup package 2:1.7.3-2 and earlier allows physically proximate attackers to gain shell access via many log in attempts with an invalid password.

EPSS

Процентиль: 51%
0.00709
Низкий