Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2018-12684

Опубликовано: 16 июн. 2018
Источник: redhat
CVSS3: 5.4
EPSS Низкий

Описание

Out-of-bounds Read in the send_ssi_file function in civetweb.c in CivetWeb through 1.10 allows attackers to cause a Denial of Service or Information Disclosure via a crafted SSI file.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Ceph Storage 1.3cephWill not fix
Red Hat Ceph Storage 2cephAffected
Red Hat Ceph Storage 3cephWill not fix

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-119
https://bugzilla.redhat.com/show_bug.cgi?id=1595529civetweb: Out-of-bounds read in civetweb.c:send_ssi_file() allows attackers to cause denial of service or information disclosure

EPSS

Процентиль: 71%
0.01426
Низкий

5.4 Medium

CVSS3

Связанные уязвимости

CVSS3: 7.1
nvd
больше 8 лет назад

Out-of-bounds Read in the send_ssi_file function in civetweb.c in CivetWeb through 1.10 allows attackers to cause a Denial of Service or Information Disclosure via a crafted SSI file.

CVSS3: 7.1
debian
больше 8 лет назад

Out-of-bounds Read in the send_ssi_file function in civetweb.c in Cive ...

CVSS3: 7.1
github
больше 4 лет назад

Out-of-bounds Read in the send_ssi_file function in civetweb.c in CivetWeb through 1.10 allows attackers to cause a Denial of Service or Information Disclosure via a crafted SSI file.

EPSS

Процентиль: 71%
0.01426
Низкий

5.4 Medium

CVSS3