Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-hw3p-w63h-mj9c

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

An issue was discovered in LINBIT csync2 through 2.0. It does not correctly check for the return value GNUTLS_E_WARNING_ALERT_RECEIVED of the gnutls_handshake() function. It neglects to call this function again, as required by the design of the API.

An issue was discovered in LINBIT csync2 through 2.0. It does not correctly check for the return value GNUTLS_E_WARNING_ALERT_RECEIVED of the gnutls_handshake() function. It neglects to call this function again, as required by the design of the API.

EPSS

Процентиль: 71%
0.0067
Низкий

Дефекты

CWE-252

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 5 лет назад

An issue was discovered in LINBIT csync2 through 2.0. It does not correctly check for the return value GNUTLS_E_WARNING_ALERT_RECEIVED of the gnutls_handshake() function. It neglects to call this function again, as required by the design of the API.

CVSS3: 5.3
nvd
около 5 лет назад

An issue was discovered in LINBIT csync2 through 2.0. It does not correctly check for the return value GNUTLS_E_WARNING_ALERT_RECEIVED of the gnutls_handshake() function. It neglects to call this function again, as required by the design of the API.

CVSS3: 5.3
debian
около 5 лет назад

An issue was discovered in LINBIT csync2 through 2.0. It does not corr ...

suse-cvrf
больше 4 лет назад

Security update for csync2

suse-cvrf
больше 4 лет назад

Security update for csync2

EPSS

Процентиль: 71%
0.0067
Низкий

Дефекты

CWE-252