Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2020-13529

Опубликовано: 10 мая 2021
Источник: nvd
CVSS3: 6.1
CVSS3: 6.1
CVSS2: 2.9
EPSS Низкий

Описание

An exploitable denial-of-service vulnerability exists in Systemd 245. A specially crafted DHCP FORCERENEW packet can cause a server running the DHCP client to be vulnerable to a DHCP ACK spoofing attack. An attacker can forge a pair of FORCERENEW and DCHP ACK packets to reconfigure the server.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:systemd_project:systemd:245:-:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:o:fedoraproject:fedora:33:*:*:*:*:*:*:*
Конфигурация 3

Одно из

cpe:2.3:a:netapp:active_iq_unified_manager:-:*:*:*:*:vsphere:*:*
cpe:2.3:a:netapp:cloud_backup:-:*:*:*:*:*:*:*

EPSS

Процентиль: 17%
0.00056
Низкий

6.1 Medium

CVSS3

6.1 Medium

CVSS3

2.9 Low

CVSS2

Дефекты

CWE-290
CWE-290

Связанные уязвимости

CVSS3: 6.1
ubuntu
около 4 лет назад

An exploitable denial-of-service vulnerability exists in Systemd 245. A specially crafted DHCP FORCERENEW packet can cause a server running the DHCP client to be vulnerable to a DHCP ACK spoofing attack. An attacker can forge a pair of FORCERENEW and DCHP ACK packets to reconfigure the server.

CVSS3: 6.1
redhat
около 4 лет назад

An exploitable denial-of-service vulnerability exists in Systemd 245. A specially crafted DHCP FORCERENEW packet can cause a server running the DHCP client to be vulnerable to a DHCP ACK spoofing attack. An attacker can forge a pair of FORCERENEW and DCHP ACK packets to reconfigure the server.

CVSS3: 6.1
debian
около 4 лет назад

An exploitable denial-of-service vulnerability exists in Systemd 245. ...

CVSS3: 6.1
github
около 3 лет назад

An exploitable denial-of-service vulnerability exists in Systemd 245. A specially crafted DHCP FORCERENEW packet can cause a server running the DHCP client to be vulnerable to a DHCP ACK spoofing attack. An attacker can forge a pair of FORCERENEW and DCHP ACK packets to reconfigure the server.

oracle-oval
больше 3 лет назад

ELSA-2021-4361: NetworkManager security, bug fix, and enhancement update (MODERATE)

EPSS

Процентиль: 17%
0.00056
Низкий

6.1 Medium

CVSS3

6.1 Medium

CVSS3

2.9 Low

CVSS2

Дефекты

CWE-290
CWE-290