Описание
An off-by-one Error issue was discovered in Systemd in format_timespan() function of time-util.c. An attacker could supply specific values for time and accuracy that leads to buffer overrun in format_timespan(), leading to a Denial of Service.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 237-3ubuntu10.57 |
| devel | not-affected | 251.4-1ubuntu7 |
| esm-infra-legacy/trusty | released | 204-5ubuntu20.31+esm2 |
| esm-infra/bionic | released | 237-3ubuntu10.57 |
| esm-infra/focal | released | 245.4-4ubuntu3.20 |
| esm-infra/xenial | released | 229-4ubuntu21.31+esm3 |
| focal | released | 245.4-4ubuntu3.20 |
| jammy | released | 249.11-0ubuntu3.7 |
| kinetic | not-affected | 251.4-1ubuntu7 |
| trusty | ignored | end of standard support |
Показывать по
EPSS
5.5 Medium
CVSS3
Связанные уязвимости
An off-by-one Error issue was discovered in Systemd in format_timespan() function of time-util.c. An attacker could supply specific values for time and accuracy that leads to buffer overrun in format_timespan(), leading to a Denial of Service.
An off-by-one Error issue was discovered in Systemd in format_timespan() function of time-util.c. An attacker could supply specific values for time and accuracy that leads to buffer overrun in format_timespan(), leading to a Denial of Service.
An off-by-one Error issue was discovered in Systemd in format_timespan ...
EPSS
5.5 Medium
CVSS3