Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2023-46316

Опубликовано: 25 окт. 2023
Источник: redhat
CVSS3: 5.5
EPSS Низкий

Описание

In buc Traceroute 2.0.12 through 2.1.2 before 2.1.3, the wrapper scripts do not properly parse command lines.

A vulnerability was found in traceroute. This security issue is caused by wrapper scripts that do not properly parse command lines.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6tracerouteOut of support scope
Red Hat Enterprise Linux 7tracerouteOut of support scope
Red Hat Enterprise Linux 8tracerouteFixedRHSA-2024:321122.05.2024
Red Hat Enterprise Linux 8.8 Extended Update SupporttracerouteFixedRHSA-2025:082329.01.2025
Red Hat Enterprise Linux 9tracerouteFixedRHSA-2024:248330.04.2024

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-214
https://bugzilla.redhat.com/show_bug.cgi?id=2246303traceroute: improper command line parsing

EPSS

Процентиль: 12%
0.00042
Низкий

5.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.5
ubuntu
около 2 лет назад

In buc Traceroute 2.0.12 through 2.1.2 before 2.1.3, the wrapper scripts do not properly parse command lines.

CVSS3: 5.5
nvd
около 2 лет назад

In buc Traceroute 2.0.12 through 2.1.2 before 2.1.3, the wrapper scripts do not properly parse command lines.

CVSS3: 5.5
msrc
около 2 лет назад

In buc Traceroute 2.0.12 through 2.1.2 before 2.1.3 the wrapper scripts do not properly parse command lines.

CVSS3: 5.5
debian
около 2 лет назад

In buc Traceroute 2.0.12 through 2.1.2 before 2.1.3, the wrapper scrip ...

suse-cvrf
почти 2 года назад

Security update for traceroute

EPSS

Процентиль: 12%
0.00042
Низкий

5.5 Medium

CVSS3