Количество 13
Количество 13
BDU:2024-04484
Уязвимость компонента OpenSSL Handler инструмента измерения пропускной способности сети Iperf3, позволяющая нарушителю получить доступ к конфиденциальной информации
CVE-2024-26306
iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.
CVE-2024-26306
iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.
CVE-2024-26306
iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.
CVE-2024-26306
CVE-2024-26306
iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server wi ...
SUSE-SU-2024:1981-1
Security update for iperf
ROS-20240611-06
Уязвимость iperf3
GHSA-x8qh-8j65-v4j9
iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.
RLSA-2024:9185
Moderate: iperf3 security update
RLSA-2024:4241
Moderate: iperf3 security update
ELSA-2024-9185
ELSA-2024-9185: iperf3 security update (MODERATE)
ELSA-2024-4241
ELSA-2024-4241: iperf3 security update (MODERATE)
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
BDU:2024-04484 Уязвимость компонента OpenSSL Handler инструмента измерения пропускной способности сети Iperf3, позволяющая нарушителю получить доступ к конфиденциальной информации | CVSS3: 5.9 | 1% Низкий | больше 1 года назад | |
CVE-2024-26306 iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario. | CVSS3: 5.9 | 1% Низкий | больше 1 года назад | |
CVE-2024-26306 iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario. | CVSS3: 5.9 | 1% Низкий | больше 1 года назад | |
CVE-2024-26306 iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario. | CVSS3: 5.9 | 1% Низкий | больше 1 года назад | |
CVSS3: 5.9 | 1% Низкий | больше 1 года назад | ||
CVE-2024-26306 iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server wi ... | CVSS3: 5.9 | 1% Низкий | больше 1 года назад | |
SUSE-SU-2024:1981-1 Security update for iperf | 1% Низкий | больше 1 года назад | ||
ROS-20240611-06 Уязвимость iperf3 | CVSS3: 5.9 | 1% Низкий | больше 1 года назад | |
GHSA-x8qh-8j65-v4j9 iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario. | CVSS3: 5.9 | 1% Низкий | больше 1 года назад | |
RLSA-2024:9185 Moderate: iperf3 security update | 8 месяцев назад | |||
RLSA-2024:4241 Moderate: iperf3 security update | 6 месяцев назад | |||
ELSA-2024-9185 ELSA-2024-9185: iperf3 security update (MODERATE) | 12 месяцев назад | |||
ELSA-2024-4241 ELSA-2024-4241: iperf3 security update (MODERATE) | больше 1 года назад |
Уязвимостей на страницу