Логотип exploitDog
bind:CVE-2018-9860
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2018-9860

Количество 4

Количество 4

ubuntu логотип

CVE-2018-9860

почти 8 лет назад

An issue was discovered in Botan 1.11.32 through 2.x before 2.6.0. An off-by-one error when processing malformed TLS-CBC ciphertext could cause the receiving side to include in the HMAC computation exactly 64K bytes of data following the record buffer, aka an over-read. The MAC comparison will subsequently fail and the connection will be closed. This could be used for denial of service. No information leak occurs.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2018-9860

почти 8 лет назад

An issue was discovered in Botan 1.11.32 through 2.x before 2.6.0. An off-by-one error when processing malformed TLS-CBC ciphertext could cause the receiving side to include in the HMAC computation exactly 64K bytes of data following the record buffer, aka an over-read. The MAC comparison will subsequently fail and the connection will be closed. This could be used for denial of service. No information leak occurs.

CVSS3: 7.5
EPSS: Низкий
debian логотип

CVE-2018-9860

почти 8 лет назад

An issue was discovered in Botan 1.11.32 through 2.x before 2.6.0. An ...

CVSS3: 7.5
EPSS: Низкий
github логотип

GHSA-3qgv-jw3w-gq48

больше 3 лет назад

An issue was discovered in Botan 1.11.32 through 2.x before 2.6.0. An off-by-one error when processing malformed TLS-CBC ciphertext could cause the receiving side to include in the HMAC computation exactly 64K bytes of data following the record buffer, aka an over-read. The MAC comparison will subsequently fail and the connection will be closed. This could be used for denial of service. No information leak occurs.

CVSS3: 7.5
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2018-9860

An issue was discovered in Botan 1.11.32 through 2.x before 2.6.0. An off-by-one error when processing malformed TLS-CBC ciphertext could cause the receiving side to include in the HMAC computation exactly 64K bytes of data following the record buffer, aka an over-read. The MAC comparison will subsequently fail and the connection will be closed. This could be used for denial of service. No information leak occurs.

CVSS3: 7.5
0%
Низкий
почти 8 лет назад
nvd логотип
CVE-2018-9860

An issue was discovered in Botan 1.11.32 through 2.x before 2.6.0. An off-by-one error when processing malformed TLS-CBC ciphertext could cause the receiving side to include in the HMAC computation exactly 64K bytes of data following the record buffer, aka an over-read. The MAC comparison will subsequently fail and the connection will be closed. This could be used for denial of service. No information leak occurs.

CVSS3: 7.5
0%
Низкий
почти 8 лет назад
debian логотип
CVE-2018-9860

An issue was discovered in Botan 1.11.32 through 2.x before 2.6.0. An ...

CVSS3: 7.5
0%
Низкий
почти 8 лет назад
github логотип
GHSA-3qgv-jw3w-gq48

An issue was discovered in Botan 1.11.32 through 2.x before 2.6.0. An off-by-one error when processing malformed TLS-CBC ciphertext could cause the receiving side to include in the HMAC computation exactly 64K bytes of data following the record buffer, aka an over-read. The MAC comparison will subsequently fail and the connection will be closed. This could be used for denial of service. No information leak occurs.

CVSS3: 7.5
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу