Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2018-0498

Опубликовано: 28 июл. 2018
Источник: ubuntu
Приоритет: medium
CVSS2: 1.9
CVSS3: 4.7

Описание

ARM mbed TLS before 2.12.0, before 2.7.5, and before 2.1.14 allows local users to achieve partial plaintext recovery (for a CBC based ciphersuite) via a cache-based side-channel attack.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needed
cosmic

not-affected

2.12.0-1
devel

not-affected

2.12.0-1
disco

not-affected

2.12.0-1
eoan

not-affected

2.12.0-1
esm-apps/bionic

needed

esm-apps/focal

not-affected

2.12.0-1
esm-apps/jammy

not-affected

2.12.0-1
esm-apps/noble

not-affected

2.12.0-1
esm-apps/xenial

released

2.2.1-2ubuntu0.3

Показывать по

РелизСтатусПримечание
bionic

DNE

cosmic

DNE

devel

DNE

disco

DNE

eoan

DNE

esm-infra-legacy/trusty

DNE

trusty/esm was DNE [trusty was needs-triage]
esm-infra/focal

DNE

focal

DNE

groovy

DNE

hirsute

DNE

Показывать по

1.9 Low

CVSS2

4.7 Medium

CVSS3

Связанные уязвимости

CVSS3: 4.7
nvd
больше 7 лет назад

ARM mbed TLS before 2.12.0, before 2.7.5, and before 2.1.14 allows local users to achieve partial plaintext recovery (for a CBC based ciphersuite) via a cache-based side-channel attack.

CVSS3: 4.7
debian
больше 7 лет назад

ARM mbed TLS before 2.12.0, before 2.7.5, and before 2.1.14 allows loc ...

CVSS3: 4.7
github
больше 3 лет назад

ARM mbed TLS before 2.12.0, before 2.7.5, and before 2.1.14 allows local users to achieve partial plaintext recovery (for a CBC based ciphersuite) via a cache-based side-channel attack.

1.9 Low

CVSS2

4.7 Medium

CVSS3