Логотип exploitDog
bind:"BDU:2024-04484" OR bind:"CVE-2024-26306"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2024-04484" OR bind:"CVE-2024-26306"

Количество 12

Количество 12

fstec логотип

BDU:2024-04484

около 1 года назад

Уязвимость компонента OpenSSL Handler инструмента измерения пропускной способности сети Iperf3, позволяющая нарушителю получить доступ к конфиденциальной информации

CVSS3: 5.9
EPSS: Низкий
ubuntu логотип

CVE-2024-26306

около 1 года назад

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
EPSS: Низкий
redhat логотип

CVE-2024-26306

около 1 года назад

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2024-26306

около 1 года назад

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
EPSS: Низкий
msrc логотип

CVE-2024-26306

около 1 года назад

CVSS3: 5.9
EPSS: Низкий
debian логотип

CVE-2024-26306

около 1 года назад

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server wi ...

CVSS3: 5.9
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1981-1

около 1 года назад

Security update for iperf

EPSS: Низкий
redos логотип

ROS-20240611-06

около 1 года назад

Уязвимость iperf3

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-x8qh-8j65-v4j9

около 1 года назад

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
EPSS: Низкий
rocky логотип

RLSA-2024:4241

около 1 месяца назад

Moderate: iperf3 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2024-9185

7 месяцев назад

ELSA-2024-9185: iperf3 security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-4241

12 месяцев назад

ELSA-2024-4241: iperf3 security update (MODERATE)

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2024-04484

Уязвимость компонента OpenSSL Handler инструмента измерения пропускной способности сети Iperf3, позволяющая нарушителю получить доступ к конфиденциальной информации

CVSS3: 5.9
0%
Низкий
около 1 года назад
ubuntu логотип
CVE-2024-26306

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
0%
Низкий
около 1 года назад
redhat логотип
CVE-2024-26306

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
0%
Низкий
около 1 года назад
nvd логотип
CVE-2024-26306

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
0%
Низкий
около 1 года назад
msrc логотип
CVSS3: 5.9
0%
Низкий
около 1 года назад
debian логотип
CVE-2024-26306

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server wi ...

CVSS3: 5.9
0%
Низкий
около 1 года назад
suse-cvrf логотип
SUSE-SU-2024:1981-1

Security update for iperf

0%
Низкий
около 1 года назад
redos логотип
ROS-20240611-06

Уязвимость iperf3

CVSS3: 5.9
0%
Низкий
около 1 года назад
github логотип
GHSA-x8qh-8j65-v4j9

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
0%
Низкий
около 1 года назад
rocky логотип
RLSA-2024:4241

Moderate: iperf3 security update

около 1 месяца назад
oracle-oval логотип
ELSA-2024-9185

ELSA-2024-9185: iperf3 security update (MODERATE)

7 месяцев назад
oracle-oval логотип
ELSA-2024-4241

ELSA-2024-4241: iperf3 security update (MODERATE)

12 месяцев назад

Уязвимостей на страницу