Описание
A DNS rebinding issue in ReadyMedia (formerly MiniDLNA) before 1.3.1 allows a remote web server to exfiltrate media files.
Пакеты
| Пакет | Статус | Версия исправления | Релиз | Тип |
|---|---|---|---|---|
| minidlna | fixed | 1.3.0+dfsg-2.2 | package | |
| minidlna | fixed | 1.3.0+dfsg-2+deb11u1 | bullseye | package |
| minidlna | fixed | 1.2.1+dfsg-2+deb10u3 | buster | package |
Примечания
https://sourceforge.net/p/minidlna/git/ci/c21208508dbc131712281ec5340687e5ae89e940/
https://www.openwall.com/lists/oss-security/2022/03/03/1
EPSS
Процентиль: 40%
0.00185
Низкий
Связанные уязвимости
CVSS3: 7.4
ubuntu
почти 4 года назад
A DNS rebinding issue in ReadyMedia (formerly MiniDLNA) before 1.3.1 allows a remote web server to exfiltrate media files.
CVSS3: 7.4
nvd
почти 4 года назад
A DNS rebinding issue in ReadyMedia (formerly MiniDLNA) before 1.3.1 allows a remote web server to exfiltrate media files.
CVSS3: 7.4
github
почти 4 года назад
A DNS rebinding issue in ReadyMedia (formerly MiniDLNA) before 1.3.1 allows a remote web server to exfiltrate media files.
EPSS
Процентиль: 40%
0.00185
Низкий