Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2016-7142

Опубликовано: 26 сент. 2016
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3
CVSS3: 5.9

Описание

The m_sasl module in InspIRCd before 2.0.23, when used with a service that supports SASL_EXTERNAL authentication, allows remote attackers to spoof certificate fingerprints and consequently log in as another user via a crafted SASL message.

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

2.0.23-1
cosmic

not-affected

2.0.23-1
devel

not-affected

2.0.23-1
disco

not-affected

2.0.23-1
eoan

not-affected

2.0.23-1
esm-apps/bionic

not-affected

2.0.23-1
esm-apps/focal

not-affected

2.0.23-1
esm-apps/jammy

not-affected

2.0.23-1
esm-apps/noble

not-affected

2.0.23-1

Показывать по

EPSS

Процентиль: 34%
0.00138
Низкий

4.3 Medium

CVSS2

5.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.9
nvd
больше 9 лет назад

The m_sasl module in InspIRCd before 2.0.23, when used with a service that supports SASL_EXTERNAL authentication, allows remote attackers to spoof certificate fingerprints and consequently log in as another user via a crafted SASL message.

CVSS3: 5.9
debian
больше 9 лет назад

The m_sasl module in InspIRCd before 2.0.23, when used with a service ...

CVSS3: 5.9
github
больше 3 лет назад

The m_sasl module in InspIRCd before 2.0.23, when used with a service that supports SASL_EXTERNAL authentication, allows remote attackers to spoof certificate fingerprints and consequently log in as another user via a crafted SASL message.

EPSS

Процентиль: 34%
0.00138
Низкий

4.3 Medium

CVSS2

5.9 Medium

CVSS3