Логотип exploitDog
bind:CVE-2022-22976
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2022-22976

Количество 5

Количество 5

ubuntu логотип

CVE-2022-22976

больше 3 лет назад

Spring Security versions 5.5.x prior to 5.5.7, 5.6.x prior to 5.6.4, and earlier unsupported versions contain an integer overflow vulnerability. When using the BCrypt class with the maximum work factor (31), the encoder does not perform any salt rounds, due to an integer overflow error. The default settings are not affected by this CVE.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2022-22976

больше 3 лет назад

Spring Security versions 5.5.x prior to 5.5.7, 5.6.x prior to 5.6.4, and earlier unsupported versions contain an integer overflow vulnerability. When using the BCrypt class with the maximum work factor (31), the encoder does not perform any salt rounds, due to an integer overflow error. The default settings are not affected by this CVE.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2022-22976

больше 3 лет назад

Spring Security versions 5.5.x prior to 5.5.7, 5.6.x prior to 5.6.4, and earlier unsupported versions contain an integer overflow vulnerability. When using the BCrypt class with the maximum work factor (31), the encoder does not perform any salt rounds, due to an integer overflow error. The default settings are not affected by this CVE.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2022-22976

больше 3 лет назад

Spring Security versions 5.5.x prior to 5.5.7, 5.6.x prior to 5.6.4, a ...

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-wx54-3278-m5g4

больше 3 лет назад

Integer overflow in BCrypt class in Spring Security

CVSS3: 5.3
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2022-22976

Spring Security versions 5.5.x prior to 5.5.7, 5.6.x prior to 5.6.4, and earlier unsupported versions contain an integer overflow vulnerability. When using the BCrypt class with the maximum work factor (31), the encoder does not perform any salt rounds, due to an integer overflow error. The default settings are not affected by this CVE.

CVSS3: 5.3
0%
Низкий
больше 3 лет назад
redhat логотип
CVE-2022-22976

Spring Security versions 5.5.x prior to 5.5.7, 5.6.x prior to 5.6.4, and earlier unsupported versions contain an integer overflow vulnerability. When using the BCrypt class with the maximum work factor (31), the encoder does not perform any salt rounds, due to an integer overflow error. The default settings are not affected by this CVE.

CVSS3: 5.3
0%
Низкий
больше 3 лет назад
nvd логотип
CVE-2022-22976

Spring Security versions 5.5.x prior to 5.5.7, 5.6.x prior to 5.6.4, and earlier unsupported versions contain an integer overflow vulnerability. When using the BCrypt class with the maximum work factor (31), the encoder does not perform any salt rounds, due to an integer overflow error. The default settings are not affected by this CVE.

CVSS3: 5.3
0%
Низкий
больше 3 лет назад
debian логотип
CVE-2022-22976

Spring Security versions 5.5.x prior to 5.5.7, 5.6.x prior to 5.6.4, a ...

CVSS3: 5.3
0%
Низкий
больше 3 лет назад
github логотип
GHSA-wx54-3278-m5g4

Integer overflow in BCrypt class in Spring Security

CVSS3: 5.3
0%
Низкий
больше 3 лет назад

Уязвимостей на страницу