Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-1000845

Опубликовано: 08 нояб. 2018
Источник: redhat
CVSS3: 5.3

Описание

No description is available for this CVE.

Отчет

This flaw was found to be a duplicate of CVE-2017-6519. Please see https://access.redhat.com/security/cve/CVE-2017-6519 for information about affected products and security errata.

Меры по смягчению последствий

Ensure UDP port 5353 is blocked in the firewall. Moreover, configure correctly the rate limiting options based on your needs (see ratelimit-interval-usec and ratelimit-burst options in /etc/avahi/avahi-daemon.conf).

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 5avahiNot affected
Red Hat Enterprise Linux 6avahiNot affected
Red Hat Enterprise Linux 7avahiNot affected
Red Hat Enterprise Linux 8avahiNot affected
Red Hat Virtualization 4redhat-virtualization-hostNot affected

Показывать по

Дополнительная информация

Дефект:
CWE-406
https://bugzilla.redhat.com/show_bug.cgi?id=1661252avahi: DNS amplification and reflection to spoofed addresses

5.3 Medium

CVSS3

Связанные уязвимости

ubuntu
около 7 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID: CVE-2017-6519. Reason: This candidate is a duplicate of CVE-2017-6519. Notes: All CVE users should reference CVE-2017-6519 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

nvd
около 7 лет назад

Rejected reason: DO NOT USE THIS CANDIDATE NUMBER. ConsultID: CVE-2017-6519. Reason: This candidate is a duplicate of CVE-2017-6519. Notes: All CVE users should reference CVE-2017-6519 instead of this candidate. All references and descriptions in this candidate have been removed to prevent accidental usage

suse-cvrf
почти 7 лет назад

Security update for avahi

suse-cvrf
около 7 лет назад

Security update for avahi

suse-cvrf
почти 7 лет назад

Security update for avahi

5.3 Medium

CVSS3