Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6qv5-f6m3-44g8

Опубликовано: 18 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 6.9
CVSS3: 5.3

Описание

OpenBSD before commit 6a23123 (2026-06-18) contains an out-of-bounds read vulnerability in the mpls_do_error function within sys/netmpls/mpls_input.c that allows remote attackers to disclose kernel stack memory by sending crafted MPLS frames with 16 labels and no Bottom-of-Stack bit set.

OpenBSD before commit 6a23123 (2026-06-18) contains an out-of-bounds read vulnerability in the mpls_do_error function within sys/netmpls/mpls_input.c that allows remote attackers to disclose kernel stack memory by sending crafted MPLS frames with 16 labels and no Bottom-of-Stack bit set.

EPSS

Процентиль: 34%
0.00423
Низкий

6.9 Medium

CVSS4

5.3 Medium

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 5.3
nvd
около 2 месяцев назад

OpenBSD before commit 6a23123 (2026-06-18) contains an out-of-bounds read vulnerability in the mpls_do_error function within sys/netmpls/mpls_input.c that allows remote attackers to disclose kernel stack memory by sending crafted MPLS frames with 16 labels and no Bottom-of-Stack bit set.

CVSS3: 5.3
fstec
около 2 месяцев назад

Уязвимость функции mpls_do_error() сценария sys/netmpls/mpls_input.c операционной системы OpenBSD, позволяющая нарушителю раскрыть защищаемую информацию

EPSS

Процентиль: 34%
0.00423
Низкий

6.9 Medium

CVSS4

5.3 Medium

CVSS3

Дефекты

CWE-125