Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-15688

Опубликовано: 26 окт. 2018
Источник: debian
EPSS Низкий

Описание

A buffer overflow vulnerability in the dhcp6 client of systemd allows a malicious dhcp6 server to overwrite heap memory in systemd-networkd. Affected releases are systemd: versions up to and including 239.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
network-managerfixed1.14.4-2package
network-managerfixed1.6.2-3+deb9u2stretchpackage
network-managernot-affectedjessiepackage
systemdfixed239-11package
systemdfixed232-25+deb9u6stretchpackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=1639067

  • https://bugs.launchpad.net/ubuntu/+source/systemd/+bug/1795921

  • https://github.com/systemd/systemd/commit/49653743f69658aeeebdb14faf1ab158f1f2cb20

  • systemd-networkd not enabled by default in Debian

  • NetworkManager: https://cgit.freedesktop.org/NetworkManager/NetworkManager/commit/?id=01ca2053bbea09f35b958c8cc7631e15469acb79

EPSS

Процентиль: 74%
0.00829
Низкий

Связанные уязвимости

CVSS3: 8.8
ubuntu
почти 7 лет назад

A buffer overflow vulnerability in the dhcp6 client of systemd allows a malicious dhcp6 server to overwrite heap memory in systemd-networkd. Affected releases are systemd: versions up to and including 239.

CVSS3: 8.8
redhat
почти 7 лет назад

A buffer overflow vulnerability in the dhcp6 client of systemd allows a malicious dhcp6 server to overwrite heap memory in systemd-networkd. Affected releases are systemd: versions up to and including 239.

CVSS3: 8.8
nvd
почти 7 лет назад

A buffer overflow vulnerability in the dhcp6 client of systemd allows a malicious dhcp6 server to overwrite heap memory in systemd-networkd. Affected releases are systemd: versions up to and including 239.

CVSS3: 8.8
msrc
около 5 лет назад

Описание отсутствует

CVSS3: 8.8
github
больше 3 лет назад

A buffer overflow vulnerability in the dhcp6 client of systemd allows a malicious dhcp6 server to overwrite heap memory in systemd-networkd. Affected releases are systemd: versions up to and including 239.

EPSS

Процентиль: 74%
0.00829
Низкий