Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2015-5288

Опубликовано: 26 окт. 2015
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS2: 6.4

Описание

The crypt function in contrib/pgcrypto in PostgreSQL before 9.0.23, 9.1.x before 9.1.19, 9.2.x before 9.2.14, 9.3.x before 9.3.10, and 9.4.x before 9.4.5 allows attackers to cause a denial of service (server crash) or read arbitrary server memory via a "too-short" salt.

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

precise

ignored

end of life
precise/esm

DNE

precise was needs-triage
trusty

DNE

trusty/esm

DNE

upstream

needs-triage

vivid

DNE

vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was released [9.1.19-0ubuntu0.14.04 ]]
precise

released

9.1.19-0ubuntu0.12.04
precise/esm

not-affected

9.1.19-0ubuntu0.12.04
trusty

released

9.1.19-0ubuntu0.14.04
trusty/esm

DNE

trusty was released [9.1.19-0ubuntu0.14.04 ]
upstream

released

9.1.19
vivid

DNE

vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

not-affected

9.3.10-0ubuntu0.14.04
precise

DNE

precise/esm

DNE

trusty

released

9.3.10-0ubuntu0.14.04
trusty/esm

not-affected

9.3.10-0ubuntu0.14.04
upstream

released

9.3.10
vivid

DNE

vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

DNE

precise

DNE

precise/esm

DNE

trusty

DNE

trusty/esm

DNE

upstream

released

9.4.5-1
vivid

released

9.4.5-0ubuntu0.15.04
vivid/stable-phone-overlay

DNE

vivid/ubuntu-core

DNE

Показывать по

EPSS

Процентиль: 87%
0.0333
Низкий

6.4 Medium

CVSS2

Связанные уязвимости

redhat
почти 10 лет назад

The crypt function in contrib/pgcrypto in PostgreSQL before 9.0.23, 9.1.x before 9.1.19, 9.2.x before 9.2.14, 9.3.x before 9.3.10, and 9.4.x before 9.4.5 allows attackers to cause a denial of service (server crash) or read arbitrary server memory via a "too-short" salt.

nvd
больше 9 лет назад

The crypt function in contrib/pgcrypto in PostgreSQL before 9.0.23, 9.1.x before 9.1.19, 9.2.x before 9.2.14, 9.3.x before 9.3.10, and 9.4.x before 9.4.5 allows attackers to cause a denial of service (server crash) or read arbitrary server memory via a "too-short" salt.

debian
больше 9 лет назад

The crypt function in contrib/pgcrypto in PostgreSQL before 9.0.23, 9. ...

suse-cvrf
больше 9 лет назад

Security update for postgresql91

github
около 3 лет назад

The crypt function in contrib/pgcrypto in PostgreSQL before 9.0.23, 9.1.x before 9.1.19, 9.2.x before 9.2.14, 9.3.x before 9.3.10, and 9.4.x before 9.4.5 allows attackers to cause a denial of service (server crash) or read arbitrary server memory via a "too-short" salt.

EPSS

Процентиль: 87%
0.0333
Низкий

6.4 Medium

CVSS2