Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2024-28960

Опубликовано: 29 мар. 2024
Источник: debian
EPSS Низкий

Описание

An issue was discovered in Mbed TLS 2.18.0 through 2.28.x before 2.28.8 and 3.x before 3.6.0, and Mbed Crypto. The PSA Crypto API mishandles shared memory.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
mbedtlsfixed2.28.8-1package
mbedtlsno-dsabookwormpackage
mbedtlsno-dsabullseyepackage
mbedtlspostponedbusterpackage

Примечания

  • https://mbed-tls.readthedocs.io/en/latest/security-advisories/mbedtls-security-advisory-2024-03/

  • https://github.com/Mbed-TLS/mbedtls-docs/blob/main/security-advisories/mbedtls-security-advisory-2024-03.md

EPSS

Процентиль: 40%
0.0018
Низкий

Связанные уязвимости

CVSS3: 8.2
ubuntu
почти 2 года назад

An issue was discovered in Mbed TLS 2.18.0 through 2.28.x before 2.28.8 and 3.x before 3.6.0, and Mbed Crypto. The PSA Crypto API mishandles shared memory.

CVSS3: 5.3
redhat
почти 2 года назад

An issue was discovered in Mbed TLS 2.18.0 through 2.28.x before 2.28.8 and 3.x before 3.6.0, and Mbed Crypto. The PSA Crypto API mishandles shared memory.

CVSS3: 8.2
nvd
почти 2 года назад

An issue was discovered in Mbed TLS 2.18.0 through 2.28.x before 2.28.8 and 3.x before 3.6.0, and Mbed Crypto. The PSA Crypto API mishandles shared memory.

CVSS3: 8.2
msrc
около 1 года назад

Описание отсутствует

CVSS3: 8.2
github
почти 2 года назад

An issue was discovered in Mbed TLS 2.18.0 through 2.28.x before 2.28.8 and 3.x before 3.6.0, and Mbed Crypto. The PSA Crypto API mishandles shared memory.

EPSS

Процентиль: 40%
0.0018
Низкий