Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2025-46807

Опубликовано: 02 июн. 2025
Источник: redhat
CVSS3: 5.3

Описание

A Allocation of Resources Without Limits or Throttling vulnerability in sslh allows attackers to easily exhaust the file descriptors in sslh and deny legitimate users service.This issue affects sslh before 2.2.4.

A flaw was found in sslh. This vulnerability allows an application-level denial of service by exhausting file descriptors via unrestricted connection attempts without limits or throttling.

Отчет

The severity of this vulnerability is rated Moderate, as it does not impact system availability. The effects are confined to the application layer, without compromising the underlying system stability.

Меры по смягчению последствий

Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-770
https://bugzilla.redhat.com/show_bug.cgi?id=2369757sslh: File Descriptor Exhaustion in sslh-select and sslh-ev triggers SEGFAULT

5.3 Medium

CVSS3

Связанные уязвимости

ubuntu
3 месяца назад

A Allocation of Resources Without Limits or Throttling vulnerability in sslh allows attackers to easily exhaust the file descriptors in sslh and deny legitimate users service.This issue affects sslh before 2.2.4.

nvd
3 месяца назад

A Allocation of Resources Without Limits or Throttling vulnerability in sslh allows attackers to easily exhaust the file descriptors in sslh and deny legitimate users service.This issue affects sslh before 2.2.4.

debian
3 месяца назад

A Allocation of Resources Without Limits or Throttling vulnerability i ...

github
3 месяца назад

A Allocation of Resources Without Limits or Throttling vulnerability in sslh allows attackers to easily exhaust the file descriptors in sslh and deny legitimate users service.This issue affects sslh before 2.2.4.

5.3 Medium

CVSS3