Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-10724

Опубликовано: 19 мая 2020
Источник: nvd
CVSS3: 5.1
CVSS3: 4.4
CVSS2: 2.1
EPSS Низкий

Описание

A vulnerability was found in DPDK versions 18.11 and above. The vhost-crypto library code is missing validations for user-supplied values, potentially allowing an information leak through an out-of-bounds memory read.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:dpdk:data_plane_development_kit:*:*:*:*:*:*:*:*
Версия до 18.11 (включая)
Конфигурация 2

Одно из

cpe:2.3:o:canonical:ubuntu_linux:18.04:*:*:*:lts:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:19.10:*:*:*:*:*:*:*
cpe:2.3:o:canonical:ubuntu_linux:20.04:*:*:*:lts:*:*:*
cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:*

EPSS

Процентиль: 24%
0.0008
Низкий

5.1 Medium

CVSS3

4.4 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-190
CWE-125

Связанные уязвимости

CVSS3: 5.1
ubuntu
больше 5 лет назад

A vulnerability was found in DPDK versions 18.11 and above. The vhost-crypto library code is missing validations for user-supplied values, potentially allowing an information leak through an out-of-bounds memory read.

CVSS3: 5.1
redhat
больше 5 лет назад

A vulnerability was found in DPDK versions 18.11 and above. The vhost-crypto library code is missing validations for user-supplied values, potentially allowing an information leak through an out-of-bounds memory read.

CVSS3: 5.1
msrc
5 месяцев назад

A vulnerability was found in DPDK versions 18.11 and above

CVSS3: 5.1
debian
больше 5 лет назад

A vulnerability was found in DPDK versions 18.11 and above. The vhost- ...

github
больше 3 лет назад

A vulnerability was found in DPDK versions 18.11 and above. The vhost-crypto library code is missing validations for user-supplied values, potentially allowing an information leak through an out-of-bounds memory read.

EPSS

Процентиль: 24%
0.0008
Низкий

5.1 Medium

CVSS3

4.4 Medium

CVSS3

2.1 Low

CVSS2

Дефекты

CWE-190
CWE-125