Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-33900

Опубликовано: 20 мая 2024
Источник: ubuntu
Приоритет: low
EPSS Низкий
CVSS3: 6.5

Описание

KeePassXC 2.7.7 allows an attacker (who has the privileges of the victim) to recover cleartext credentials via a memory dump. NOTE: the vendor disputes this because memory-management constraints make this unavoidable in the current design and other realistic designs.

РелизСтатусПримечание
devel

not-affected

disputed
esm-apps/bionic

not-affected

disputed
esm-apps/focal

not-affected

disputed
esm-apps/jammy

not-affected

disputed
esm-apps/noble

not-affected

disputed
focal

not-affected

disputed
jammy

not-affected

disputed
mantic

ignored

end of life, was needs-triage
noble

not-affected

disputed
upstream

needs-triage

Показывать по

EPSS

Процентиль: 32%
0.00127
Низкий

6.5 Medium

CVSS3

Связанные уязвимости

CVSS3: 6.5
nvd
больше 1 года назад

KeePassXC 2.7.7 allows an attacker (who has the privileges of the victim) to recover cleartext credentials via a memory dump. NOTE: the vendor disputes this because memory-management constraints make this unavoidable in the current design and other realistic designs.

CVSS3: 6.5
debian
больше 1 года назад

KeePassXC 2.7.7 allows an attacker (who has the privileges of the vict ...

CVSS3: 6.5
github
больше 1 года назад

KeePassXC 2.7.7 allows attackers to recover cleartext credentials.

EPSS

Процентиль: 32%
0.00127
Низкий

6.5 Medium

CVSS3