Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xj59-9qjv-fr54

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

SHA-1 is not collision resistant, which makes it easier for context-dependent attackers to conduct spoofing attacks, as demonstrated by attacks on the use of SHA-1 in TLS 1.2. NOTE: this CVE exists to provide a common identifier for referencing this SHA-1 issue; the existence of an identifier is not, by itself, a technology recommendation.

SHA-1 is not collision resistant, which makes it easier for context-dependent attackers to conduct spoofing attacks, as demonstrated by attacks on the use of SHA-1 in TLS 1.2. NOTE: this CVE exists to provide a common identifier for referencing this SHA-1 issue; the existence of an identifier is not, by itself, a technology recommendation.

EPSS

Процентиль: 44%
0.00219
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-326

Связанные уязвимости

CVSS3: 5.9
nvd
больше 9 лет назад

SHA-1 is not collision resistant, which makes it easier for context-dependent attackers to conduct spoofing attacks, as demonstrated by attacks on the use of SHA-1 in TLS 1.2. NOTE: this CVE exists to provide a common identifier for referencing this SHA-1 issue; the existence of an identifier is not, by itself, a technology recommendation.

CVSS3: 5.9
fstec
почти 21 год назад

Уязвимость реализации криптографического алгоритма SHA-1 браузера Google Chrome, позволяющая нарушителю проводить спуфинг-атаки

EPSS

Процентиль: 44%
0.00219
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-326