Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2013-0250

Опубликовано: 18 янв. 2013
Источник: redhat
CVSS2: 4.3

Описание

The init_nss_hash function in exec/totemcrypto.c in Corosync 2.0 before 2.3 does not properly initialize the HMAC key, which allows remote attackers to cause a denial of service (crash) via a crafted packet.

Отчет

Not vulnerable. This issue did not affect the version of corosync as shipped with Red Hat Enterprise Linux 6.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6corosyncNot affected

Показывать по

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=9068342.x: Remote DoS due improper HMAC initialization

4.3 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 11 лет назад

The init_nss_hash function in exec/totemcrypto.c in Corosync 2.0 before 2.3 does not properly initialize the HMAC key, which allows remote attackers to cause a denial of service (crash) via a crafted packet.

nvd
больше 11 лет назад

The init_nss_hash function in exec/totemcrypto.c in Corosync 2.0 before 2.3 does not properly initialize the HMAC key, which allows remote attackers to cause a denial of service (crash) via a crafted packet.

debian
больше 11 лет назад

The init_nss_hash function in exec/totemcrypto.c in Corosync 2.0 befor ...

github
почти 4 года назад

The init_nss_hash function in exec/totemcrypto.c in Corosync 2.0 before 2.3 does not properly initialize the HMAC key, which allows remote attackers to cause a denial of service (crash) via a crafted packet.

4.3 Medium

CVSS2