Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-1894

Опубликовано: 04 мая 2023
Источник: nvd
CVSS3: 5.3
EPSS Низкий

Описание

A Regular Expression Denial of Service (ReDoS) issue was discovered in Puppet Server 7.9.2 certificate validation. An issue related to specifically crafted certificate names significantly slowed down server operations.

Уязвимые конфигурации

Конфигурация 1

Одно из

cpe:2.3:a:puppet:puppet_enterprise:2021.7.1:*:*:*:*:*:*:*
cpe:2.3:a:puppet:puppet_enterprise:2023.0:*:*:*:*:*:*:*
cpe:2.3:a:puppet:puppet_server:7.9.2:*:*:*:*:*:*:*

EPSS

Процентиль: 16%
0.00052
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-1333

Связанные уязвимости

CVSS3: 5.3
ubuntu
почти 3 года назад

A Regular Expression Denial of Service (ReDoS) issue was discovered in Puppet Server 7.9.2 certificate validation. An issue related to specifically crafted certificate names significantly slowed down server operations.

CVSS3: 5.3
redhat
почти 3 года назад

A Regular Expression Denial of Service (ReDoS) issue was discovered in Puppet Server 7.9.2 certificate validation. An issue related to specifically crafted certificate names significantly slowed down server operations.

CVSS3: 5.3
debian
почти 3 года назад

A Regular Expression Denial of Service (ReDoS) issue was discovered in ...

CVSS3: 5.3
github
почти 3 года назад

A Regular Expression Denial of Service (ReDoS) issue was discovered in Puppet Server 7.9.2 certificate validation. An issue related to specifically crafted certificate names significantly slowed down server operations.

EPSS

Процентиль: 16%
0.00052
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-1333