Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2023-5625

Опубликовано: 01 нояб. 2023
Источник: nvd
CVSS3: 5.3
CVSS3: 7.5
EPSS Низкий

Описание

A regression was introduced in the Red Hat build of python-eventlet due to a change in the patch application strategy, resulting in a patch for CVE-2021-21419 not being applied for all builds of all products.

Уязвимые конфигурации

Конфигурация 1

Одновременно

Одно из

cpe:2.3:a:redhat:openshift_container_platform_for_arm64:4.12:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openshift_container_platform_for_linuxone:4.12:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openshift_container_platform_for_power:4.12:*:*:*:*:*:*:*
cpe:2.3:a:redhat:openshift_container_platform_ibm_z_systems:4.12:*:*:*:*:*:*:*

Одно из

cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:9.0:*:*:*:*:*:*:*
Конфигурация 2
cpe:2.3:a:redhat:openstack_platform:17.1:*:*:*:*:*:*:*

EPSS

Процентиль: 23%
0.00075
Низкий

5.3 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-770
NVD-CWE-noinfo
CWE-400

Связанные уязвимости

CVSS3: 5.3
ubuntu
больше 1 года назад

A regression was introduced in the Red Hat build of python-eventlet due to a change in the patch application strategy, resulting in a patch for CVE-2021-21419 not being applied for all builds of all products.

CVSS3: 5.3
redhat
больше 1 года назад

A regression was introduced in the Red Hat build of python-eventlet due to a change in the patch application strategy, resulting in a patch for CVE-2021-21419 not being applied for all builds of all products.

CVSS3: 5.3
debian
больше 1 года назад

A regression was introduced in the Red Hat build of python-eventlet du ...

CVSS3: 5.3
github
больше 1 года назад

A regression was introduced in the Red Hat build of python-eventlet due to a change in the patch application strategy, resulting in a patch for CVE-2021-21419 not being applied for all builds of all products.

CVSS3: 7.5
fstec
больше 1 года назад

Уязвимость библиотеки python-eventlet платформы для построения облачных решений OpenStack Platform, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 23%
0.00075
Низкий

5.3 Medium

CVSS3

7.5 High

CVSS3

Дефекты

CWE-770
NVD-CWE-noinfo
CWE-400