Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-6rhm-fw89-rh2q

Опубликовано: 18 мая 2023
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

It was discovered that an update for PCS package in RHBA-2023:2151 erratum released as part of Red Hat Enterprise Linux 9.2 failed to include the fix for the Webpack issue CVE-2023-28154 (for PCS package), which was previously addressed in Red Hat Enterprise Linux 9.1 via erratum RHSA-2023:1591. The CVE-2023-2319 was assigned to that Red Hat specific security regression in Red Hat Enterprise Linux 9.2.

It was discovered that an update for PCS package in RHBA-2023:2151 erratum released as part of Red Hat Enterprise Linux 9.2 failed to include the fix for the Webpack issue CVE-2023-28154 (for PCS package), which was previously addressed in Red Hat Enterprise Linux 9.1 via erratum RHSA-2023:1591. The CVE-2023-2319 was assigned to that Red Hat specific security regression in Red Hat Enterprise Linux 9.2.

EPSS

Процентиль: 26%
0.00084
Низкий

9.8 Critical

CVSS3

Связанные уязвимости

CVSS3: 9.1
redhat
около 2 лет назад

It was discovered that an update for PCS package in RHBA-2023:2151 erratum released as part of Red Hat Enterprise Linux 9.2 failed to include the fix for the Webpack issue CVE-2023-28154 (for PCS package), which was previously addressed in Red Hat Enterprise Linux 9.1 via erratum RHSA-2023:1591. The CVE-2023-2319 was assigned to that Red Hat specific security regression in Red Hat Enterprise Linux 9.2.

CVSS3: 9.8
nvd
около 2 лет назад

It was discovered that an update for PCS package in RHBA-2023:2151 erratum released as part of Red Hat Enterprise Linux 9.2 failed to include the fix for the Webpack issue CVE-2023-28154 (for PCS package), which was previously addressed in Red Hat Enterprise Linux 9.1 via erratum RHSA-2023:1591. The CVE-2023-2319 was assigned to that Red Hat specific security regression in Red Hat Enterprise Linux 9.2.

CVSS3: 9.1
fstec
около 2 лет назад

Уязвимость операционной системы Red Hat Enterprise Linux, связанная с недостатками контроля доступа, позволяющая нарушителю получить несанкционированный доступ к ограниченным функциям

oracle-oval
почти 2 года назад

ELSA-2023-12595: pcs security update (IMPORTANT)

EPSS

Процентиль: 26%
0.00084
Низкий

9.8 Critical

CVSS3