Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2019-10052

Опубликовано: 28 авг. 2019
Источник: debian
EPSS Низкий

Описание

An issue was discovered in Suricata 4.1.3. If the network packet does not have the right length, the parser tries to access a part of a DHCP packet. At this point, the Rust environment runs into a panic in parse_clientid_option in the dhcp/parser.rs file.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
suricatafixed1:4.1.4-1package
suricatano-dsabusterpackage
suricatano-dsastretchpackage
suricatanot-affectedjessiepackage

Примечания

  • https://redmine.openinfosecfoundation.org/issues/2902

  • https://redmine.openinfosecfoundation.org/issues/2947

EPSS

Процентиль: 69%
0.00597
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 6 лет назад

An issue was discovered in Suricata 4.1.3. If the network packet does not have the right length, the parser tries to access a part of a DHCP packet. At this point, the Rust environment runs into a panic in parse_clientid_option in the dhcp/parser.rs file.

CVSS3: 7.5
nvd
больше 6 лет назад

An issue was discovered in Suricata 4.1.3. If the network packet does not have the right length, the parser tries to access a part of a DHCP packet. At this point, the Rust environment runs into a panic in parse_clientid_option in the dhcp/parser.rs file.

CVSS3: 7.5
github
больше 3 лет назад

An issue was discovered in Suricata 4.1.3. If the network packet does not have the right length, the parser tries to access a part of a DHCP packet. At this point, the Rust environment runs into a panic in parse_clientid_option in the dhcp/parser.rs file.

EPSS

Процентиль: 69%
0.00597
Низкий