Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xrxh-g8jf-mf2m

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

Suricata version 4.0.4 incorrectly handles the parsing of the SSH banner. A malformed SSH banner can cause the parsing code to read beyond the allocated data because SSHParseBanner in app-layer-ssh.c lacks a length check.

Suricata version 4.0.4 incorrectly handles the parsing of the SSH banner. A malformed SSH banner can cause the parsing code to read beyond the allocated data because SSHParseBanner in app-layer-ssh.c lacks a length check.

EPSS

Процентиль: 61%
0.00413
Низкий

7.5 High

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 7 лет назад

Suricata version 4.0.4 incorrectly handles the parsing of the SSH banner. A malformed SSH banner can cause the parsing code to read beyond the allocated data because SSHParseBanner in app-layer-ssh.c lacks a length check.

CVSS3: 7.5
nvd
почти 7 лет назад

Suricata version 4.0.4 incorrectly handles the parsing of the SSH banner. A malformed SSH banner can cause the parsing code to read beyond the allocated data because SSHParseBanner in app-layer-ssh.c lacks a length check.

CVSS3: 7.5
debian
почти 7 лет назад

Suricata version 4.0.4 incorrectly handles the parsing of the SSH bann ...

EPSS

Процентиль: 61%
0.00413
Низкий

7.5 High

CVSS3

Дефекты

CWE-125