Описание
Multiple format string vulnerabilities in heartbeat 0.4.9 and earlier (claimed as buffer overflows in some sources) allow remote attackers to execute arbitrary code via certain packets to UDP port 694 (incorrectly claimed as TCP in some sources).
Ссылки
- PatchVendor Advisory
- Vendor Advisory
- PatchVendor Advisory
- PatchVendor Advisory
- Vendor Advisory
- PatchVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 0.4.9 (включая)
cpe:2.3:a:linux-ha:heartbeat:*:*:*:*:*:*:*:*
EPSS
Процентиль: 94%
0.15353
Средний
10 Critical
CVSS2
Дефекты
NVD-CWE-Other
Связанные уязвимости
debian
почти 23 года назад
Multiple format string vulnerabilities in heartbeat 0.4.9 and earlier ...
github
больше 3 лет назад
Multiple format string vulnerabilities in heartbeat 0.4.9 and earlier (claimed as buffer overflows in some sources) allow remote attackers to execute arbitrary code via certain packets to UDP port 694 (incorrectly claimed as TCP in some sources).
EPSS
Процентиль: 94%
0.15353
Средний
10 Critical
CVSS2
Дефекты
NVD-CWE-Other