Описание
Weaknesses in the generation of TCP/UDP source ports and some other header values in Google's gVisor allowed them to be predicted by an external attacker in some circumstances.
Ссылки
- Patch
- Patch
- Patch
- ExploitMitigationTechnical DescriptionThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 20231030.0 (исключая)
Одно из
cpe:2.3:a:google:gvisor:*:*:*:*:*:*:*:*
cpe:2.3:a:google:gvisor:20231106.0:*:*:*:*:*:*:*
EPSS
Процентиль: 26%
0.0009
Низкий
5.3 Medium
CVSS3
Дефекты
CWE-340
Связанные уязвимости
CVSS3: 5.3
ubuntu
около 1 года назад
Weaknesses in the generation of TCP/UDP source ports and some other header values in Google's gVisor allowed them to be predicted by an external attacker in some circumstances.
CVSS3: 5.3
github
около 1 года назад
Weaknesses in the generation of TCP/UDP source ports and some other header values in Google's gVisor allowed them to be predicted by an external attacker in some circumstances.
EPSS
Процентиль: 26%
0.0009
Низкий
5.3 Medium
CVSS3
Дефекты
CWE-340