Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-3661

Опубликовано: 06 мая 2024
Источник: ubuntu
Приоритет: high
EPSS Низкий
CVSS3: 7.6

Описание

DHCP can add routes to a client’s routing table via the classless static route option (121). VPN-based security solutions that rely on routes to redirect traffic can be forced to leak traffic over the physical interface. An attacker on the same local network can read, disrupt, or possibly modify network traffic that was expected to be protected by the VPN.

РелизСтатусПримечание
devel

deferred

esm-apps/bionic

deferred

esm-apps/focal

deferred

esm-apps/jammy

deferred

esm-apps/noble

deferred

esm-apps/xenial

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

deferred

esm-apps/focal

deferred

esm-apps/xenial

deferred

focal

ignored

end of standard support, was deferred
jammy

DNE

mantic

DNE

noble

DNE

oracular

DNE

plucky

DNE

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

deferred

esm-apps/focal

deferred

esm-apps/xenial

deferred

focal

ignored

end of standard support, was deferred
jammy

DNE

mantic

DNE

noble

DNE

oracular

DNE

plucky

DNE

Показывать по

РелизСтатусПримечание
devel

deferred

esm-apps/focal

deferred

esm-apps/jammy

deferred

esm-apps/noble

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

oracular

deferred

plucky

deferred

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/bionic

deferred

esm-apps/xenial

deferred

esm-infra/focal

DNE

focal

DNE

jammy

DNE

mantic

DNE

noble

DNE

oracular

DNE

plucky

DNE

Показывать по

РелизСтатусПримечание
devel

deferred

esm-apps/bionic

deferred

esm-apps/focal

deferred

esm-apps/jammy

deferred

esm-apps/noble

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

oracular

deferred

Показывать по

РелизСтатусПримечание
devel

DNE

esm-apps/jammy

deferred

esm-infra/focal

DNE

focal

DNE

jammy

deferred

mantic

DNE

noble

DNE

oracular

DNE

plucky

DNE

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

deferred

esm-apps/bionic

deferred

esm-apps/focal

deferred

esm-apps/jammy

deferred

esm-apps/noble

deferred

esm-apps/xenial

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

Показывать по

РелизСтатусПримечание
devel

deferred

esm-apps/bionic

deferred

esm-apps/focal

deferred

esm-apps/jammy

deferred

esm-apps/noble

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

oracular

deferred

Показывать по

РелизСтатусПримечание
devel

deferred

esm-apps/bionic

deferred

esm-apps/focal

deferred

esm-apps/jammy

deferred

esm-apps/noble

deferred

esm-apps/xenial

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

Показывать по

РелизСтатусПримечание
devel

deferred

esm-apps/bionic

deferred

esm-apps/focal

deferred

esm-apps/jammy

deferred

esm-apps/noble

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

oracular

deferred

Показывать по

РелизСтатусПримечание
devel

deferred

esm-apps/bionic

deferred

esm-apps/focal

deferred

esm-apps/jammy

deferred

esm-apps/noble

deferred

esm-apps/xenial

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

Показывать по

РелизСтатусПримечание
devel

deferred

esm-apps/xenial

deferred

esm-infra/bionic

deferred

esm-infra/focal

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

oracular

deferred

plucky

deferred

Показывать по

РелизСтатусПримечание
devel

deferred

esm-infra/bionic

deferred

esm-infra/focal

deferred

esm-infra/xenial

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

oracular

deferred

plucky

deferred

Показывать по

РелизСтатусПримечание
devel

deferred

esm-apps/jammy

deferred

esm-apps/noble

deferred

esm-infra/focal

DNE

focal

DNE

jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

oracular

deferred

plucky

deferred

Показывать по

РелизСтатусПримечание
devel

deferred

esm-apps/bionic

deferred

esm-apps/focal

deferred

esm-apps/jammy

deferred

esm-apps/noble

deferred

esm-apps/xenial

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

Показывать по

РелизСтатусПримечание
devel

deferred

esm-apps/bionic

deferred

esm-apps/focal

deferred

esm-apps/jammy

deferred

esm-apps/noble

deferred

esm-apps/xenial

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

Показывать по

РелизСтатусПримечание
devel

deferred

esm-apps/bionic

deferred

esm-apps/focal

deferred

esm-apps/jammy

deferred

esm-apps/noble

deferred

esm-apps/xenial

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

Показывать по

РелизСтатусПримечание
devel

deferred

esm-apps/bionic

deferred

esm-apps/focal

deferred

esm-apps/jammy

deferred

esm-apps/noble

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

oracular

deferred

Показывать по

РелизСтатусПримечание
devel

deferred

esm-infra-legacy/trusty

deferred

esm-infra/bionic

deferred

esm-infra/focal

deferred

esm-infra/xenial

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

oracular

deferred

Показывать по

РелизСтатусПримечание
devel

deferred

esm-infra/bionic

deferred

esm-infra/focal

deferred

esm-infra/xenial

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

oracular

deferred

plucky

deferred

Показывать по

РелизСтатусПримечание
devel

DNE

esm-infra-legacy/trusty

deferred

esm-infra/bionic

deferred

esm-infra/focal

deferred

esm-infra/xenial

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

DNE

oracular

DNE

Показывать по

РелизСтатусПримечание
devel

deferred

esm-apps/bionic

deferred

esm-apps/focal

deferred

esm-apps/jammy

deferred

esm-apps/noble

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

oracular

deferred

Показывать по

РелизСтатусПримечание
devel

deferred

esm-apps/noble

deferred

esm-infra/focal

DNE

focal

DNE

jammy

DNE

mantic

ignored

end of life, was deferred
noble

deferred

oracular

deferred

plucky

deferred

upstream

needs-triage

Показывать по

РелизСтатусПримечание
devel

deferred

esm-apps/jammy

deferred

esm-apps/noble

deferred

esm-infra/focal

DNE

focal

DNE

jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

oracular

deferred

plucky

deferred

Показывать по

РелизСтатусПримечание
devel

deferred

esm-apps/bionic

deferred

esm-apps/focal

deferred

esm-apps/jammy

deferred

esm-apps/noble

deferred

esm-apps/xenial

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

Показывать по

РелизСтатусПримечание
devel

deferred

esm-apps/bionic

deferred

esm-apps/focal

deferred

esm-apps/jammy

deferred

esm-apps/noble

deferred

esm-apps/xenial

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

Показывать по

РелизСтатусПримечание
devel

deferred

esm-apps/bionic

deferred

esm-apps/focal

deferred

esm-apps/jammy

deferred

esm-apps/noble

deferred

esm-apps/xenial

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

Показывать по

РелизСтатусПримечание
devel

deferred

esm-apps/bionic

deferred

esm-apps/focal

deferred

esm-apps/xenial

deferred

focal

ignored

end of standard support, was deferred
jammy

deferred

mantic

ignored

end of life, was deferred
noble

deferred

oracular

deferred

plucky

deferred

Показывать по

EPSS

Процентиль: 80%
0.01504
Низкий

7.6 High

CVSS3

Связанные уязвимости

CVSS3: 7.6
redhat
около 1 года назад

DHCP can add routes to a client’s routing table via the classless static route option (121). VPN-based security solutions that rely on routes to redirect traffic can be forced to leak traffic over the physical interface. An attacker on the same local network can read, disrupt, or possibly modify network traffic that was expected to be protected by the VPN.

CVSS3: 7.6
nvd
около 1 года назад

DHCP can add routes to a client’s routing table via the classless static route option (121). VPN-based security solutions that rely on routes to redirect traffic can be forced to leak traffic over the physical interface. An attacker on the same local network can read, disrupt, or possibly modify network traffic that was expected to be protected by the VPN.

rocky
около 1 месяца назад

Moderate: Bug fix of NetworkManager

CVSS3: 8.8
github
около 1 года назад

By design, the DHCP protocol does not authenticate messages, including for example the classless static route option (121). An attacker with the ability to send DHCP messages can manipulate routes to redirect VPN traffic, allowing the attacker to read, disrupt, or possibly modify network traffic that was expected to be protected by the VPN. Many, if not most VPN systems based on IP routing are susceptible to such attacks.

oracle-oval
5 месяцев назад

ELSA-2025-0377: Security and bug fixes for NetworkManager (MODERATE)

EPSS

Процентиль: 80%
0.01504
Низкий

7.6 High

CVSS3

Уязвимость CVE-2024-3661