Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-28960

Опубликовано: 29 мар. 2024
Источник: debian
EPSS Низкий

Описание

An issue was discovered in Mbed TLS 2.18.0 through 2.28.x before 2.28.8 and 3.x before 3.6.0, and Mbed Crypto. The PSA Crypto API mishandles shared memory.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mbedtlsfixed2.28.8-1package
mbedtlsno-dsabookwormpackage
mbedtlsno-dsabullseyepackage
mbedtlspostponedbusterpackage

Примечания

  • https://mbed-tls.readthedocs.io/en/latest/security-advisories/mbedtls-security-advisory-2024-03/

  • https://github.com/Mbed-TLS/mbedtls-docs/blob/main/security-advisories/mbedtls-security-advisory-2024-03.md

EPSS

Процентиль: 34%
0.00134
Низкий

Связанные уязвимости

CVSS3: 8.2
ubuntu
около 1 года назад

An issue was discovered in Mbed TLS 2.18.0 through 2.28.x before 2.28.8 and 3.x before 3.6.0, and Mbed Crypto. The PSA Crypto API mishandles shared memory.

CVSS3: 5.3
redhat
около 1 года назад

An issue was discovered in Mbed TLS 2.18.0 through 2.28.x before 2.28.8 and 3.x before 3.6.0, and Mbed Crypto. The PSA Crypto API mishandles shared memory.

CVSS3: 8.2
nvd
около 1 года назад

An issue was discovered in Mbed TLS 2.18.0 through 2.28.x before 2.28.8 and 3.x before 3.6.0, and Mbed Crypto. The PSA Crypto API mishandles shared memory.

CVSS3: 8.2
msrc
7 месяцев назад

Описание отсутствует

CVSS3: 8.2
github
около 1 года назад

An issue was discovered in Mbed TLS 2.18.0 through 2.28.x before 2.28.8 and 3.x before 3.6.0, and Mbed Crypto. The PSA Crypto API mishandles shared memory.

EPSS

Процентиль: 34%
0.00134
Низкий