Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2025-46807

Опубликовано: 02 июн. 2025
Источник: debian
EPSS Низкий

Описание

A Allocation of Resources Without Limits or Throttling vulnerability in sslh allows attackers to easily exhaust the file descriptors in sslh and deny legitimate users service.This issue affects sslh before 2.2.4.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
sslhfixed2.3.1-1package
sslhno-dsatrixiepackage
sslhno-dsabookwormpackage
sslhignoredbullseyepackage

Примечания

  • https://bugzilla.suse.com/show_bug.cgi?id=1243122

  • Fixed by: https://github.com/yrutschle/sslh/commit/ff8206f7c8a47f901b78a1b78db5a4c788f6aa6f (v2.2.4)

  • https://www.openwall.com/lists/oss-security/2025/06/13/1

EPSS

Процентиль: 32%
0.00393
Низкий

Связанные уязвимости

ubuntu
около 1 года назад

A Allocation of Resources Without Limits or Throttling vulnerability in sslh allows attackers to easily exhaust the file descriptors in sslh and deny legitimate users service.This issue affects sslh before 2.2.4.

CVSS3: 5.3
redhat
около 1 года назад

A Allocation of Resources Without Limits or Throttling vulnerability in sslh allows attackers to easily exhaust the file descriptors in sslh and deny legitimate users service.This issue affects sslh before 2.2.4.

nvd
около 1 года назад

A Allocation of Resources Without Limits or Throttling vulnerability in sslh allows attackers to easily exhaust the file descriptors in sslh and deny legitimate users service.This issue affects sslh before 2.2.4.

github
около 1 года назад

A Allocation of Resources Without Limits or Throttling vulnerability in sslh allows attackers to easily exhaust the file descriptors in sslh and deny legitimate users service.This issue affects sslh before 2.2.4.

CVSS3: 7.5
fstec
около 1 года назад

Уязвимость компонента File Descriptor Handler мультиплексора sslh, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 32%
0.00393
Низкий