Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2vcg-w879-pf3h

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.1

Описание

The Multicast DNS (mDNS) responder used in BOSE Soundtouch 30 inadvertently responds to IPv4 unicast queries with source addresses that are not link-local, which allows remote attackers to cause a denial of service (traffic amplification) or obtain potentially sensitive information via port-5353 UDP packets.

The Multicast DNS (mDNS) responder used in BOSE Soundtouch 30 inadvertently responds to IPv4 unicast queries with source addresses that are not link-local, which allows remote attackers to cause a denial of service (traffic amplification) or obtain potentially sensitive information via port-5353 UDP packets.

EPSS

Процентиль: 74%
0.00806
Низкий

9.1 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.1
nvd
почти 9 лет назад

The Multicast DNS (mDNS) responder used in BOSE Soundtouch 30 inadvertently responds to IPv4 unicast queries with source addresses that are not link-local, which allows remote attackers to cause a denial of service (traffic amplification) or obtain potentially sensitive information via port-5353 UDP packets.

EPSS

Процентиль: 74%
0.00806
Низкий

9.1 Critical

CVSS3