Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

ubuntu логотип

CVE-2024-5564

Опубликовано: 31 мая 2024
Источник: ubuntu
Приоритет: medium
EPSS Низкий
CVSS3: 8.1

Описание

A vulnerability was found in libndp. This flaw allows a local malicious user to cause a buffer overflow in NetworkManager, triggered by sending a malformed IPv6 router advertisement packet. This issue occurred as libndp was not correctly validating the route length information.

РелизСтатусПримечание
devel

not-affected

1.8-2fakesync1
esm-infra/bionic

released

1.6-1ubuntu0.1~esm1
esm-infra/focal

not-affected

1.7-0ubuntu1.1
esm-infra/xenial

released

1.4-2ubuntu0.16.04.1+esm1
focal

released

1.7-0ubuntu1.1
jammy

released

1.8-0ubuntu3.1
mantic

released

1.8-1fakesync1ubuntu0.23.10.1
noble

released

1.8-1fakesync1ubuntu0.24.04.1
oracular

not-affected

1.8-2fakesync1
upstream

released

1.9

Показывать по

EPSS

Процентиль: 80%
0.01475
Низкий

8.1 High

CVSS3

Связанные уязвимости

CVSS3: 8.1
redhat
около 1 года назад

A vulnerability was found in libndp. This flaw allows a local malicious user to cause a buffer overflow in NetworkManager, triggered by sending a malformed IPv6 router advertisement packet. This issue occurred as libndp was not correctly validating the route length information.

CVSS3: 8.1
nvd
около 1 года назад

A vulnerability was found in libndp. This flaw allows a local malicious user to cause a buffer overflow in NetworkManager, triggered by sending a malformed IPv6 router advertisement packet. This issue occurred as libndp was not correctly validating the route length information.

CVSS3: 8.1
msrc
12 месяцев назад

Описание отсутствует

CVSS3: 8.1
debian
около 1 года назад

A vulnerability was found in libndp. This flaw allows a local maliciou ...

suse-cvrf
11 месяцев назад

Security update for libndp

EPSS

Процентиль: 80%
0.01475
Низкий

8.1 High

CVSS3