Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2021-3345

Опубликовано: 29 янв. 2021
Источник: ubuntu
Приоритет: high
EPSS Низкий
CVSS2: 7.2
CVSS3: 7.8

Описание

_gcry_md_block_write in cipher/hash-common.c in Libgcrypt version 1.9.0 has a heap-based buffer overflow when the digest final function sets a large count value. It is recommended to upgrade to 1.9.1 or later.

РелизСтатусПримечание
bionic

DNE

devel

DNE

esm-infra-legacy/trusty

not-affected

1.5.3-2ubuntu4.6+esm1
esm-infra/focal

DNE

focal

DNE

groovy

DNE

precise/esm

not-affected

1.5.0-3ubuntu0.9
trusty

ignored

end of standard support
trusty/esm

not-affected

1.5.3-2ubuntu4.6+esm1
upstream

needs-triage

Показывать по

РелизСтатусПримечание
bionic

not-affected

1.8.1-4ubuntu1.2
devel

not-affected

1.8.7-2ubuntu1
esm-infra-legacy/trusty

DNE

esm-infra/bionic

not-affected

1.8.1-4ubuntu1.2
esm-infra/focal

not-affected

1.8.5-5ubuntu1
esm-infra/xenial

not-affected

1.6.5-2ubuntu0.6
focal

not-affected

1.8.5-5ubuntu1
groovy

not-affected

1.8.5-5ubuntu2
precise/esm

DNE

trusty

ignored

end of standard support

Показывать по

EPSS

Процентиль: 90%
0.05706
Низкий

7.2 High

CVSS2

7.8 High

CVSS3

Связанные уязвимости

CVSS3: 9.8
redhat
около 5 лет назад

_gcry_md_block_write in cipher/hash-common.c in Libgcrypt version 1.9.0 has a heap-based buffer overflow when the digest final function sets a large count value. It is recommended to upgrade to 1.9.1 or later.

CVSS3: 7.8
nvd
около 5 лет назад

_gcry_md_block_write in cipher/hash-common.c in Libgcrypt version 1.9.0 has a heap-based buffer overflow when the digest final function sets a large count value. It is recommended to upgrade to 1.9.1 or later.

CVSS3: 7.8
debian
около 5 лет назад

_gcry_md_block_write in cipher/hash-common.c in Libgcrypt version 1.9. ...

CVSS3: 7.8
github
больше 3 лет назад

_gcry_md_block_write in cipher/hash-common.c in Libgcrypt before 1.9.1 has a heap-based buffer overflow when the digest final function sets a large count value.

CVSS3: 7.8
fstec
около 5 лет назад

Уязвимость функции _gcry_md_block_write (cipher / hash-common.c) криптографической библиотеки Libgcrypt, позволяющая нарушителю выполнить произвольный код

EPSS

Процентиль: 90%
0.05706
Низкий

7.2 High

CVSS2

7.8 High

CVSS3