Логотип exploitDog
bind:"CVE-2023-7250" OR bind:"CVE-2024-26306"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2023-7250" OR bind:"CVE-2024-26306"

Количество 21

Количество 21

rocky логотип

RLSA-2024:9185

около 1 года назад

Moderate: iperf3 security update

EPSS: Низкий
rocky логотип

RLSA-2024:4241

11 месяцев назад

Moderate: iperf3 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2024-9185

больше 1 года назад

ELSA-2024-9185: iperf3 security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-4241

больше 1 года назад

ELSA-2024-4241: iperf3 security update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2023-7250

около 2 лет назад

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2023-7250

больше 2 лет назад

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2023-7250

около 2 лет назад

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2023-7250

около 1 месяца назад

Iperf3: possible denial of service

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2023-7250

около 2 лет назад

A flaw was found in iperf, a utility for testing network performance u ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2024-26306

почти 2 года назад

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
EPSS: Низкий
redhat логотип

CVE-2024-26306

почти 2 года назад

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2024-26306

почти 2 года назад

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
EPSS: Низкий
msrc логотип

CVE-2024-26306

почти 2 года назад

EPSS: Низкий
debian логотип

CVE-2024-26306

почти 2 года назад

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server wi ...

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-g636-8hgg-7gx9

около 2 лет назад

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.

CVSS3: 5.3
EPSS: Низкий
fstec логотип

BDU:2024-03238

около 2 лет назад

Уязвимость инструмента измерения пропускной способности сети Iperf3, связанная с разрешенными списками входных данных, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1981-1

почти 2 года назад

Security update for iperf

EPSS: Низкий
github логотип

GHSA-x8qh-8j65-v4j9

почти 2 года назад

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
EPSS: Низкий
fstec логотип

BDU:2024-04484

почти 2 года назад

Уязвимость компонента OpenSSL Handler инструмента измерения пропускной способности сети Iperf3, позволяющая нарушителю получить доступ к конфиденциальной информации

CVSS3: 5.9
EPSS: Низкий
redos логотип

ROS-20240422-07

почти 2 года назад

Уязвимость iperf3

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2024:9185

Moderate: iperf3 security update

около 1 года назад
rocky логотип
RLSA-2024:4241

Moderate: iperf3 security update

11 месяцев назад
oracle-oval логотип
ELSA-2024-9185

ELSA-2024-9185: iperf3 security update (MODERATE)

больше 1 года назад
oracle-oval логотип
ELSA-2024-4241

ELSA-2024-4241: iperf3 security update (MODERATE)

больше 1 года назад
ubuntu логотип
CVE-2023-7250

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.

CVSS3: 5.3
0%
Низкий
около 2 лет назад
redhat логотип
CVE-2023-7250

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.

CVSS3: 5.3
0%
Низкий
больше 2 лет назад
nvd логотип
CVE-2023-7250

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.

CVSS3: 5.3
0%
Низкий
около 2 лет назад
msrc логотип
CVE-2023-7250

Iperf3: possible denial of service

CVSS3: 5.3
0%
Низкий
около 1 месяца назад
debian логотип
CVE-2023-7250

A flaw was found in iperf, a utility for testing network performance u ...

CVSS3: 5.3
0%
Низкий
около 2 лет назад
ubuntu логотип
CVE-2024-26306

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
1%
Низкий
почти 2 года назад
redhat логотип
CVE-2024-26306

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
1%
Низкий
почти 2 года назад
nvd логотип
CVE-2024-26306

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
1%
Низкий
почти 2 года назад
msrc логотип
1%
Низкий
почти 2 года назад
debian логотип
CVE-2024-26306

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server wi ...

CVSS3: 5.9
1%
Низкий
почти 2 года назад
github логотип
GHSA-g636-8hgg-7gx9

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.

CVSS3: 5.3
0%
Низкий
около 2 лет назад
fstec логотип
BDU:2024-03238

Уязвимость инструмента измерения пропускной способности сети Iperf3, связанная с разрешенными списками входных данных, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.3
0%
Низкий
около 2 лет назад
suse-cvrf логотип
SUSE-SU-2024:1981-1

Security update for iperf

1%
Низкий
почти 2 года назад
github логотип
GHSA-x8qh-8j65-v4j9

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
1%
Низкий
почти 2 года назад
fstec логотип
BDU:2024-04484

Уязвимость компонента OpenSSL Handler инструмента измерения пропускной способности сети Iperf3, позволяющая нарушителю получить доступ к конфиденциальной информации

CVSS3: 5.9
1%
Низкий
почти 2 года назад
redos логотип
ROS-20240422-07

Уязвимость iperf3

CVSS3: 5.3
0%
Низкий
почти 2 года назад

Уязвимостей на страницу