Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2020-36516

Опубликовано: 26 фев. 2022
Источник: debian
EPSS Низкий

Описание

An issue was discovered in the Linux kernel through 5.16.11. The mixed IPID assignment method with the hash-based IPID assignment policy allows an off-path attacker to inject data into a victim's TCP session or terminate that session.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
linuxfixed5.16.7-1package
linuxfixed5.10.103-1bullseyepackage
linuxfixed4.19.232-1busterpackage

Примечания

  • https://dl.acm.org/doi/10.1145/3372297.3417884

  • https://git.kernel.org/linus/23f57406b82de51809d5812afd96f210f8b627f3

EPSS

Процентиль: 5%
0.00025
Низкий

Связанные уязвимости

CVSS3: 5.9
ubuntu
больше 3 лет назад

An issue was discovered in the Linux kernel through 5.16.11. The mixed IPID assignment method with the hash-based IPID assignment policy allows an off-path attacker to inject data into a victim's TCP session or terminate that session.

CVSS3: 5.9
redhat
больше 3 лет назад

An issue was discovered in the Linux kernel through 5.16.11. The mixed IPID assignment method with the hash-based IPID assignment policy allows an off-path attacker to inject data into a victim's TCP session or terminate that session.

CVSS3: 5.9
nvd
больше 3 лет назад

An issue was discovered in the Linux kernel through 5.16.11. The mixed IPID assignment method with the hash-based IPID assignment policy allows an off-path attacker to inject data into a victim's TCP session or terminate that session.

suse-cvrf
почти 3 года назад

Security update for the Linux Kernel (Live Patch 33 for SLE 15 SP1)

CVSS3: 5.9
github
больше 3 лет назад

An issue was discovered in the Linux kernel through 5.16.11. The mixed IPID assignment method with the hash-based IPID assignment policy allows an off-path attacker to inject data into a victim's TCP session or terminate that session.

EPSS

Процентиль: 5%
0.00025
Низкий