Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-10932

Опубликовано: 10 авг. 2018
Источник: redhat
CVSS3: 4.3
EPSS Низкий

Описание

lldptool version 1.0.1 and older can print a raw, unsanitized attacker controlled buffer when mngAddr information is displayed. This may allow an attacker to inject shell control characters into the buffer and impact the behavior of the terminal.

lldptool can print a raw, unsanitized attacker controlled buffer when mngAddr information is displayed. This may allow an attacker to inject shell control characters into the buffer and impact the behavior of the terminal.

Отчет

Red Hat Product Security has rated this issue as having a security impact of Low, and a future update may address this flaw.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6lldpadWill not fix
Red Hat Enterprise Linux 7lldpadFixedRHBA-2019:233906.08.2019
Red Hat Enterprise Linux 8lldpadFixedRHSA-2019:367305.11.2019

Показывать по

Дополнительная информация

Статус:

Low
Дефект:
CWE-117
https://bugzilla.redhat.com/show_bug.cgi?id=1614896lldptool: improper sanitization of shell-escape codes

EPSS

Процентиль: 22%
0.00074
Низкий

4.3 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.3
ubuntu
больше 7 лет назад

lldptool version 1.0.1 and older can print a raw, unsanitized attacker controlled buffer when mngAddr information is displayed. This may allow an attacker to inject shell control characters into the buffer and impact the behavior of the terminal.

CVSS3: 4.3
nvd
больше 7 лет назад

lldptool version 1.0.1 and older can print a raw, unsanitized attacker controlled buffer when mngAddr information is displayed. This may allow an attacker to inject shell control characters into the buffer and impact the behavior of the terminal.

CVSS3: 4.3
msrc
больше 4 лет назад

Описание отсутствует

CVSS3: 4.3
debian
больше 7 лет назад

lldptool version 1.0.1 and older can print a raw, unsanitized attacker ...

suse-cvrf
больше 4 лет назад

Security update for open-lldp

EPSS

Процентиль: 22%
0.00074
Низкий

4.3 Medium

CVSS3