Описание
log_blackbox.c in libqb before 2.0.8 allows a buffer overflow via long log messages because the header size is not considered.
Пакеты
Пакет | Статус | Версия исправления | Релиз | Тип |
---|---|---|---|---|
libqb | fixed | 2.0.8-1 | package | |
libqb | no-dsa | bookworm | package | |
libqb | no-dsa | bullseye | package | |
libqb | not-affected | buster | package |
Примечания
https://github.com/ClusterLabs/libqb/commit/1bbaa929b77113532785c408dd1b41cd0521ffc8 (v2.0.8)
https://github.com/ClusterLabs/libqb/pull/490
EPSS
Процентиль: 38%
0.00167
Низкий
Связанные уязвимости
CVSS3: 9.8
ubuntu
около 2 лет назад
log_blackbox.c in libqb before 2.0.8 allows a buffer overflow via long log messages because the header size is not considered.
CVSS3: 7.2
redhat
около 2 лет назад
log_blackbox.c in libqb before 2.0.8 allows a buffer overflow via long log messages because the header size is not considered.
CVSS3: 9.8
nvd
около 2 лет назад
log_blackbox.c in libqb before 2.0.8 allows a buffer overflow via long log messages because the header size is not considered.
EPSS
Процентиль: 38%
0.00167
Низкий