Описание
The OCB feature in libnettle in Nettle 3.9 before 3.9.1 allows memory corruption.
A vulnerability was found in Nettle. The issue occurs in the new Offset Code Book (OCB) code and may cause a denial of service or other problems, leading to memory corruption.
Затронутые пакеты
| Платформа | Пакет | Состояние | Рекомендация | Релиз |
|---|---|---|---|---|
| Red Hat Enterprise Linux 7 | nettle | Not affected | ||
| Red Hat Enterprise Linux 8 | nettle | Not affected | ||
| Red Hat Enterprise Linux 9 | nettle | Not affected |
Показывать по
10
Дополнительная информация
Статус:
Moderate
Дефект:
CWE-119
https://bugzilla.redhat.com/show_bug.cgi?id=2217430nettle: Memory corruption in OCB handling
EPSS
Процентиль: 61%
0.01023
Низкий
5.3 Medium
CVSS3
Связанные уязвимости
CVSS3: 9.8
ubuntu
около 3 лет назад
The OCB feature in libnettle in Nettle 3.9 before 3.9.1 allows memory corruption.
CVSS3: 9.8
nvd
около 3 лет назад
The OCB feature in libnettle in Nettle 3.9 before 3.9.1 allows memory corruption.
CVSS3: 9.8
debian
около 3 лет назад
The OCB feature in libnettle in Nettle 3.9 before 3.9.1 allows memory ...
CVSS3: 9.8
github
около 3 лет назад
The OCB feature in libnettle in Nettle 3.9 before 3.9.1 allows memory corruption.
EPSS
Процентиль: 61%
0.01023
Низкий
5.3 Medium
CVSS3