Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2019-5164

Опубликовано: 03 дек. 2019
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS2: 4.6
CVSS3: 7.8

Описание

An exploitable code execution vulnerability exists in the ss-manager binary of Shadowsocks-libev 3.3.2. Specially crafted network packets sent to ss-manager can cause an arbitrary binary to run, resulting in code execution and privilege escalation. An attacker can send network packets to trigger this vulnerability.

РелизСтатусПримечание
bionic

ignored

end of standard support, was needs-triage
devel

not-affected

3.3.3+ds-3
disco

ignored

end of life
eoan

ignored

end of life
esm-apps/bionic

needs-triage

esm-apps/focal

not-affected

3.3.3+ds-3
esm-apps/jammy

not-affected

3.3.3+ds-3
esm-apps/noble

not-affected

3.3.3+ds-3
esm-infra-legacy/trusty

DNE

focal

not-affected

3.3.3+ds-3

Показывать по

EPSS

Процентиль: 62%
0.00429
Низкий

4.6 Medium

CVSS2

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 7.8
nvd
около 6 лет назад

An exploitable code execution vulnerability exists in the ss-manager binary of Shadowsocks-libev 3.3.2. Specially crafted network packets sent to ss-manager can cause an arbitrary binary to run, resulting in code execution and privilege escalation. An attacker can send network packets to trigger this vulnerability.

CVSS3: 7.8
debian
около 6 лет назад

An exploitable code execution vulnerability exists in the ss-manager b ...

CVSS3: 7.8
github
больше 3 лет назад

An exploitable code execution vulnerability exists in the ss-manager binary of Shadowsocks-libev 3.3.2. Specially crafted network packets sent to ss-manager can cause an arbitrary binary to run, resulting in code execution and privilege escalation. An attacker can send network packets to trigger this vulnerability.

suse-cvrf
около 6 лет назад

Security update for shadowsocks-libev

EPSS

Процентиль: 62%
0.00429
Низкий

4.6 Medium

CVSS2

7.8 High

CVSS3