Логотип exploitDog
bind:"CVE-2019-5736" OR bind:"CVE-2019-6486"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2019-5736" OR bind:"CVE-2019-6486"

Количество 42

Количество 42

oracle-oval логотип

ELSA-2019-4551

больше 6 лет назад

ELSA-2019-4551: docker-engine security update (IMPORTANT)

EPSS: Низкий
oracle-oval логотип

ELSA-2019-4550

больше 6 лет назад

ELSA-2019-4550: docker-engine security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1499-1

около 6 лет назад

Security update for containerd, docker, docker-runc, go, go1.11, go1.12, golang-github-docker-libnetwork

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1444-1

около 6 лет назад

Security update for containerd, docker, docker-runc, go, go1.11, go1.12, golang-github-docker-libnetwork

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1234-2

около 6 лет назад

Security update for containerd, docker, docker-runc, go, go1.11, go1.12, golang-github-docker-libnetwork

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1234-1

около 6 лет назад

Security update for containerd, docker, docker-runc, go, go1.11, go1.12, golang-github-docker-libnetwork

EPSS: Низкий
ubuntu логотип

CVE-2019-6486

больше 6 лет назад

Go before 1.10.8 and 1.11.x before 1.11.5 mishandles P-521 and P-384 elliptic curves, which allows attackers to cause a denial of service (CPU consumption) or possibly conduct ECDH private key recovery attacks.

CVSS3: 8.2
EPSS: Низкий
redhat логотип

CVE-2019-6486

больше 6 лет назад

Go before 1.10.8 and 1.11.x before 1.11.5 mishandles P-521 and P-384 elliptic curves, which allows attackers to cause a denial of service (CPU consumption) or possibly conduct ECDH private key recovery attacks.

CVSS3: 7.5
EPSS: Низкий
nvd логотип

CVE-2019-6486

больше 6 лет назад

Go before 1.10.8 and 1.11.x before 1.11.5 mishandles P-521 and P-384 elliptic curves, which allows attackers to cause a denial of service (CPU consumption) or possibly conduct ECDH private key recovery attacks.

CVSS3: 8.2
EPSS: Низкий
debian логотип

CVE-2019-6486

больше 6 лет назад

Go before 1.10.8 and 1.11.x before 1.11.5 mishandles P-521 and P-384 e ...

CVSS3: 8.2
EPSS: Низкий
ubuntu логотип

CVE-2019-5736

больше 6 лет назад

runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc binary (and consequently obtain host root access) by leveraging the ability to execute a command as root within one of these types of containers: (1) a new container with an attacker-controlled image, or (2) an existing container, to which the attacker previously had write access, that can be attached with docker exec. This occurs because of file-descriptor mishandling, related to /proc/self/exe.

CVSS3: 8.6
EPSS: Средний
redhat логотип

CVE-2019-5736

больше 6 лет назад

runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc binary (and consequently obtain host root access) by leveraging the ability to execute a command as root within one of these types of containers: (1) a new container with an attacker-controlled image, or (2) an existing container, to which the attacker previously had write access, that can be attached with docker exec. This occurs because of file-descriptor mishandling, related to /proc/self/exe.

CVSS3: 7.7
EPSS: Средний
nvd логотип

CVE-2019-5736

больше 6 лет назад

runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc binary (and consequently obtain host root access) by leveraging the ability to execute a command as root within one of these types of containers: (1) a new container with an attacker-controlled image, or (2) an existing container, to which the attacker previously had write access, that can be attached with docker exec. This occurs because of file-descriptor mishandling, related to /proc/self/exe.

CVSS3: 8.6
EPSS: Средний
msrc логотип

CVE-2019-5736

почти 4 года назад

CVSS3: 8.6
EPSS: Средний
debian логотип

CVE-2019-5736

больше 6 лет назад

runc through 1.0-rc6, as used in Docker before 18.09.2 and other produ ...

CVSS3: 8.6
EPSS: Средний
suse-cvrf логотип

openSUSE-SU-2019:1164-1

около 6 лет назад

Security update for go1.11

EPSS: Низкий
github логотип

GHSA-vj2x-6gjj-jvh2

около 3 лет назад

Go before 1.10.8 and 1.11.x before 1.11.5 mishandles P-521 and P-384 elliptic curves, which allows attackers to cause a denial of service (CPU consumption) or possibly conduct ECDH private key recovery attacks.

CVSS3: 8.2
EPSS: Низкий
oracle-oval логотип

ELSA-2019-4546

больше 6 лет назад

ELSA-2019-4546: kubernetes security update (IMPORTANT)

EPSS: Низкий
fstec логотип

BDU:2019-00688

больше 6 лет назад

Уязвимость модуля crypto языка программирования Go, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:2245-1

больше 5 лет назад

Security update for lxc

EPSS: Средний

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
oracle-oval логотип
ELSA-2019-4551

ELSA-2019-4551: docker-engine security update (IMPORTANT)

больше 6 лет назад
oracle-oval логотип
ELSA-2019-4550

ELSA-2019-4550: docker-engine security update (IMPORTANT)

больше 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1499-1

Security update for containerd, docker, docker-runc, go, go1.11, go1.12, golang-github-docker-libnetwork

около 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1444-1

Security update for containerd, docker, docker-runc, go, go1.11, go1.12, golang-github-docker-libnetwork

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1234-2

Security update for containerd, docker, docker-runc, go, go1.11, go1.12, golang-github-docker-libnetwork

около 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1234-1

Security update for containerd, docker, docker-runc, go, go1.11, go1.12, golang-github-docker-libnetwork

около 6 лет назад
ubuntu логотип
CVE-2019-6486

Go before 1.10.8 and 1.11.x before 1.11.5 mishandles P-521 and P-384 elliptic curves, which allows attackers to cause a denial of service (CPU consumption) or possibly conduct ECDH private key recovery attacks.

CVSS3: 8.2
1%
Низкий
больше 6 лет назад
redhat логотип
CVE-2019-6486

Go before 1.10.8 and 1.11.x before 1.11.5 mishandles P-521 and P-384 elliptic curves, which allows attackers to cause a denial of service (CPU consumption) or possibly conduct ECDH private key recovery attacks.

CVSS3: 7.5
1%
Низкий
больше 6 лет назад
nvd логотип
CVE-2019-6486

Go before 1.10.8 and 1.11.x before 1.11.5 mishandles P-521 and P-384 elliptic curves, which allows attackers to cause a denial of service (CPU consumption) or possibly conduct ECDH private key recovery attacks.

CVSS3: 8.2
1%
Низкий
больше 6 лет назад
debian логотип
CVE-2019-6486

Go before 1.10.8 and 1.11.x before 1.11.5 mishandles P-521 and P-384 e ...

CVSS3: 8.2
1%
Низкий
больше 6 лет назад
ubuntu логотип
CVE-2019-5736

runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc binary (and consequently obtain host root access) by leveraging the ability to execute a command as root within one of these types of containers: (1) a new container with an attacker-controlled image, or (2) an existing container, to which the attacker previously had write access, that can be attached with docker exec. This occurs because of file-descriptor mishandling, related to /proc/self/exe.

CVSS3: 8.6
52%
Средний
больше 6 лет назад
redhat логотип
CVE-2019-5736

runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc binary (and consequently obtain host root access) by leveraging the ability to execute a command as root within one of these types of containers: (1) a new container with an attacker-controlled image, or (2) an existing container, to which the attacker previously had write access, that can be attached with docker exec. This occurs because of file-descriptor mishandling, related to /proc/self/exe.

CVSS3: 7.7
52%
Средний
больше 6 лет назад
nvd логотип
CVE-2019-5736

runc through 1.0-rc6, as used in Docker before 18.09.2 and other products, allows attackers to overwrite the host runc binary (and consequently obtain host root access) by leveraging the ability to execute a command as root within one of these types of containers: (1) a new container with an attacker-controlled image, or (2) an existing container, to which the attacker previously had write access, that can be attached with docker exec. This occurs because of file-descriptor mishandling, related to /proc/self/exe.

CVSS3: 8.6
52%
Средний
больше 6 лет назад
msrc логотип
CVSS3: 8.6
52%
Средний
почти 4 года назад
debian логотип
CVE-2019-5736

runc through 1.0-rc6, as used in Docker before 18.09.2 and other produ ...

CVSS3: 8.6
52%
Средний
больше 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1164-1

Security update for go1.11

1%
Низкий
около 6 лет назад
github логотип
GHSA-vj2x-6gjj-jvh2

Go before 1.10.8 and 1.11.x before 1.11.5 mishandles P-521 and P-384 elliptic curves, which allows attackers to cause a denial of service (CPU consumption) or possibly conduct ECDH private key recovery attacks.

CVSS3: 8.2
1%
Низкий
около 3 лет назад
oracle-oval логотип
ELSA-2019-4546

ELSA-2019-4546: kubernetes security update (IMPORTANT)

больше 6 лет назад
fstec логотип
BDU:2019-00688

Уязвимость модуля crypto языка программирования Go, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 7.5
1%
Низкий
больше 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:2245-1

Security update for lxc

52%
Средний
больше 5 лет назад

Уязвимостей на страницу