Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-mhq6-64cp-3vx7

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 6.5

Описание

It was found that usage of snprintf function in feature/locks translator of glusterfs server 3.8.4, as shipped with Red Hat Gluster Storage, was vulnerable to a format string attack. A remote, authenticated attacker could use this flaw to cause remote denial of service.

It was found that usage of snprintf function in feature/locks translator of glusterfs server 3.8.4, as shipped with Red Hat Gluster Storage, was vulnerable to a format string attack. A remote, authenticated attacker could use this flaw to cause remote denial of service.

EPSS

Процентиль: 84%
0.02655
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-134
CWE-20

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 8 лет назад

It was found that usage of snprintf function in feature/locks translator of glusterfs server 3.8.4, as shipped with Red Hat Gluster Storage, was vulnerable to a format string attack. A remote, authenticated attacker could use this flaw to cause remote denial of service.

CVSS3: 6.5
redhat
почти 8 лет назад

It was found that usage of snprintf function in feature/locks translator of glusterfs server 3.8.4, as shipped with Red Hat Gluster Storage, was vulnerable to a format string attack. A remote, authenticated attacker could use this flaw to cause remote denial of service.

CVSS3: 6.5
nvd
почти 8 лет назад

It was found that usage of snprintf function in feature/locks translator of glusterfs server 3.8.4, as shipped with Red Hat Gluster Storage, was vulnerable to a format string attack. A remote, authenticated attacker could use this flaw to cause remote denial of service.

CVSS3: 6.5
msrc
11 дней назад

It was found that usage of snprintf function in feature/locks translator of glusterfs server 3.8.4, as shipped with Red Hat Gluster Storage, was vulnerable to a format string attack. A remote, authenticated attacker could use this flaw to cause remote denial of service.

CVSS3: 6.5
debian
почти 8 лет назад

It was found that usage of snprintf function in feature/locks translat ...

EPSS

Процентиль: 84%
0.02655
Низкий

6.5 Medium

CVSS3

Дефекты

CWE-134
CWE-20