Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2017-17689

Опубликовано: 16 мая 2018
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.3
CVSS3: 5.9

Описание

The S/MIME specification allows a Cipher Block Chaining (CBC) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL.

РелизСтатусПримечание
artful

ignored

end of life
bionic

not-affected

cosmic

not-affected

devel

not-affected

disco

not-affected

eoan

not-affected

esm-apps/bionic

not-affected

esm-apps/focal

not-affected

esm-apps/jammy

not-affected

esm-apps/noble

not-affected

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/xenial

released

4:15.12.3-0ubuntu1.1+esm1
esm-infra-legacy/trusty

released

4:4.13.3-0ubuntu0.2+esm1
jammy

DNE

noble

DNE

plucky

DNE

upstream

released

18.04.1

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

released

4:17.12.3-0ubuntu3+esm1
esm-apps/focal

not-affected

4:19.12.3-0ubuntu1
esm-apps/jammy

not-affected

4:21.12.3-0ubuntu1
esm-apps/noble

not-affected

4:23.08.5-0ubuntu4
jammy

not-affected

4:21.12.3-0ubuntu1
noble

not-affected

4:23.08.5-0ubuntu4
plucky

DNE

upstream

released

18.04.1

Показывать по

РелизСтатусПримечание
artful

ignored

end of life
bionic

ignored

end of standard support, was needs-triage
cosmic

ignored

end of life
devel

not-affected

4:25.07.80-0ubuntu1
disco

ignored

end of life
eoan

ignored

end of life
esm-apps/bionic

released

4:17.12.3-0ubuntu1+esm1
esm-apps/focal

not-affected

4:19.12.3-0ubuntu1
esm-apps/jammy

not-affected

4:21.12.3-0ubuntu1
esm-apps/noble

not-affected

4:23.08.5-0ubuntu5.1

Показывать по

РелизСтатусПримечание
artful

released

1:52.8.0+build1-0ubuntu0.17.10.1
bionic

released

1:52.8.0+build1-0ubuntu0.18.04.1
cosmic

released

1:60.2.1+build1-0ubuntu1
devel

released

1:60.2.1+build1-0ubuntu1
disco

released

1:60.2.1+build1-0ubuntu1
eoan

released

1:60.2.1+build1-0ubuntu1
esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was needs-triage]
esm-infra/focal

DNE

focal

released

1:60.2.1+build1-0ubuntu1
groovy

released

1:60.2.1+build1-0ubuntu1

Показывать по

EPSS

Процентиль: 63%
0.00447
Низкий

4.3 Medium

CVSS2

5.9 Medium

CVSS3

Связанные уязвимости

CVSS3: 5.3
redhat
больше 7 лет назад

The S/MIME specification allows a Cipher Block Chaining (CBC) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL.

CVSS3: 5.9
nvd
больше 7 лет назад

The S/MIME specification allows a Cipher Block Chaining (CBC) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL.

CVSS3: 5.9
debian
больше 7 лет назад

The S/MIME specification allows a Cipher Block Chaining (CBC) malleabi ...

CVSS3: 5.9
github
больше 3 лет назад

The S/MIME specification allows a Cipher Block Chaining (CBC) malleability-gadget attack that can indirectly lead to plaintext exfiltration, aka EFAIL.

suse-cvrf
больше 7 лет назад

Security update for enigmail

EPSS

Процентиль: 63%
0.00447
Низкий

4.3 Medium

CVSS2

5.9 Medium

CVSS3