Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-rcm9-p88f-cmqm

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.8

Описание

An exploitable code execution vulnerability exists in the ss-manager binary of Shadowsocks-libev 3.3.2. Specially crafted network packets sent to ss-manager can cause an arbitrary binary to run, resulting in code execution and privilege escalation. An attacker can send network packets to trigger this vulnerability.

An exploitable code execution vulnerability exists in the ss-manager binary of Shadowsocks-libev 3.3.2. Specially crafted network packets sent to ss-manager can cause an arbitrary binary to run, resulting in code execution and privilege escalation. An attacker can send network packets to trigger this vulnerability.

EPSS

Процентиль: 62%
0.00429
Низкий

7.8 High

CVSS3

Дефекты

CWE-306

Связанные уязвимости

CVSS3: 7.8
ubuntu
около 6 лет назад

An exploitable code execution vulnerability exists in the ss-manager binary of Shadowsocks-libev 3.3.2. Specially crafted network packets sent to ss-manager can cause an arbitrary binary to run, resulting in code execution and privilege escalation. An attacker can send network packets to trigger this vulnerability.

CVSS3: 7.8
nvd
около 6 лет назад

An exploitable code execution vulnerability exists in the ss-manager binary of Shadowsocks-libev 3.3.2. Specially crafted network packets sent to ss-manager can cause an arbitrary binary to run, resulting in code execution and privilege escalation. An attacker can send network packets to trigger this vulnerability.

CVSS3: 7.8
debian
около 6 лет назад

An exploitable code execution vulnerability exists in the ss-manager b ...

suse-cvrf
около 6 лет назад

Security update for shadowsocks-libev

EPSS

Процентиль: 62%
0.00429
Низкий

7.8 High

CVSS3

Дефекты

CWE-306