Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-2217

Опубликовано: 30 янв. 2017
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 5
CVSS3: 5.3

Описание

The OpenSSL address implementation in Socat 1.7.3.0 and 2.0.0-b8 does not use a prime number for the DH, which makes it easier for remote attackers to obtain the shared secret.

РелизСтатусПримечание
artful

not-affected

1.7.3.2-1
devel

not-affected

1.7.3.2-2ubuntu2
esm-apps/xenial

not-affected

1.7.3.1-1
esm-infra-legacy/trusty

not-affected

1.7.2.3-1
precise

ignored

end of life
precise/esm

DNE

precise was needed
trusty

not-affected

1.7.2.3-1
trusty/esm

not-affected

1.7.2.3-1
upstream

released

1.7.3.1-1
vivid/stable-phone-overlay

DNE

Показывать по

EPSS

Процентиль: 57%
0.00352
Низкий

5 Medium

CVSS2

5.3 Medium

CVSS3

Связанные уязвимости

redhat
около 10 лет назад

The OpenSSL address implementation in Socat 1.7.3.0 and 2.0.0-b8 does not use a prime number for the DH, which makes it easier for remote attackers to obtain the shared secret.

CVSS3: 5.3
nvd
около 9 лет назад

The OpenSSL address implementation in Socat 1.7.3.0 and 2.0.0-b8 does not use a prime number for the DH, which makes it easier for remote attackers to obtain the shared secret.

CVSS3: 5.3
debian
около 9 лет назад

The OpenSSL address implementation in Socat 1.7.3.0 and 2.0.0-b8 does ...

CVSS3: 5.3
github
больше 3 лет назад

The OpenSSL address implementation in Socat 1.7.3.0 and 2.0.0-b8 does not use a prime number for the DH, which makes it easier for remote attackers to obtain the shared secret.

EPSS

Процентиль: 57%
0.00352
Низкий

5 Medium

CVSS2

5.3 Medium

CVSS3