Логотип exploitDog
bind:"CVE-2023-7250" OR bind:"CVE-2024-26306"
Консоль
Логотип exploitDog

exploitDog

bind:"CVE-2023-7250" OR bind:"CVE-2024-26306"

Количество 20

Количество 20

rocky логотип

RLSA-2024:4241

около 1 месяца назад

Moderate: iperf3 security update

EPSS: Низкий
oracle-oval логотип

ELSA-2024-9185

7 месяцев назад

ELSA-2024-9185: iperf3 security update (MODERATE)

EPSS: Низкий
oracle-oval логотип

ELSA-2024-4241

12 месяцев назад

ELSA-2024-4241: iperf3 security update (MODERATE)

EPSS: Низкий
ubuntu логотип

CVE-2023-7250

больше 1 года назад

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2023-7250

больше 1 года назад

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2023-7250

больше 1 года назад

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.

CVSS3: 5.3
EPSS: Низкий
msrc логотип

CVE-2023-7250

около 1 года назад

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2023-7250

больше 1 года назад

A flaw was found in iperf, a utility for testing network performance u ...

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2024-26306

около 1 года назад

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
EPSS: Низкий
redhat логотип

CVE-2024-26306

около 1 года назад

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
EPSS: Низкий
nvd логотип

CVE-2024-26306

около 1 года назад

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
EPSS: Низкий
msrc логотип

CVE-2024-26306

около 1 года назад

CVSS3: 5.9
EPSS: Низкий
debian логотип

CVE-2024-26306

около 1 года назад

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server wi ...

CVSS3: 5.9
EPSS: Низкий
redos логотип

ROS-20240422-07

около 1 года назад

Уязвимость iperf3

CVSS3: 5.3
EPSS: Низкий
github логотип

GHSA-g636-8hgg-7gx9

больше 1 года назад

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.

CVSS3: 5.3
EPSS: Низкий
fstec логотип

BDU:2024-03238

больше 1 года назад

Уязвимость инструмента измерения пропускной способности сети Iperf3, связанная с разрешенными списками входных данных, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2024:1981-1

около 1 года назад

Security update for iperf

EPSS: Низкий
redos логотип

ROS-20240611-06

около 1 года назад

Уязвимость iperf3

CVSS3: 5.9
EPSS: Низкий
github логотип

GHSA-x8qh-8j65-v4j9

около 1 года назад

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
EPSS: Низкий
fstec логотип

BDU:2024-04484

около 1 года назад

Уязвимость компонента OpenSSL Handler инструмента измерения пропускной способности сети Iperf3, позволяющая нарушителю получить доступ к конфиденциальной информации

CVSS3: 5.9
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
rocky логотип
RLSA-2024:4241

Moderate: iperf3 security update

около 1 месяца назад
oracle-oval логотип
ELSA-2024-9185

ELSA-2024-9185: iperf3 security update (MODERATE)

7 месяцев назад
oracle-oval логотип
ELSA-2024-4241

ELSA-2024-4241: iperf3 security update (MODERATE)

12 месяцев назад
ubuntu логотип
CVE-2023-7250

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.

CVSS3: 5.3
0%
Низкий
больше 1 года назад
redhat логотип
CVE-2023-7250

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.

CVSS3: 5.3
0%
Низкий
больше 1 года назад
nvd логотип
CVE-2023-7250

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.

CVSS3: 5.3
0%
Низкий
больше 1 года назад
msrc логотип
CVSS3: 5.3
0%
Низкий
около 1 года назад
debian логотип
CVE-2023-7250

A flaw was found in iperf, a utility for testing network performance u ...

CVSS3: 5.3
0%
Низкий
больше 1 года назад
ubuntu логотип
CVE-2024-26306

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
0%
Низкий
около 1 года назад
redhat логотип
CVE-2024-26306

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
0%
Низкий
около 1 года назад
nvd логотип
CVE-2024-26306

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
0%
Низкий
около 1 года назад
msrc логотип
CVSS3: 5.9
0%
Низкий
около 1 года назад
debian логотип
CVE-2024-26306

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server wi ...

CVSS3: 5.9
0%
Низкий
около 1 года назад
redos логотип
ROS-20240422-07

Уязвимость iperf3

CVSS3: 5.3
0%
Низкий
около 1 года назад
github логотип
GHSA-g636-8hgg-7gx9

A flaw was found in iperf, a utility for testing network performance using TCP, UDP, and SCTP. A malicious or malfunctioning client can send less than the expected amount of data to the iperf server, which can cause the server to hang indefinitely waiting for the remainder or until the connection gets closed. This will prevent other connections to the server, leading to a denial of service.

CVSS3: 5.3
0%
Низкий
больше 1 года назад
fstec логотип
BDU:2024-03238

Уязвимость инструмента измерения пропускной способности сети Iperf3, связанная с разрешенными списками входных данных, позволяющая нарушителю вызвать отказ в обслуживании

CVSS3: 5.3
0%
Низкий
больше 1 года назад
suse-cvrf логотип
SUSE-SU-2024:1981-1

Security update for iperf

0%
Низкий
около 1 года назад
redos логотип
ROS-20240611-06

Уязвимость iperf3

CVSS3: 5.9
0%
Низкий
около 1 года назад
github логотип
GHSA-x8qh-8j65-v4j9

iPerf3 before 3.17, when used with OpenSSL before 3.2.0 as a server with RSA authentication, allows a timing side channel in RSA decryption operations. This side channel could be sufficient for an attacker to recover credential plaintext. It requires the attacker to send a large number of messages for decryption, as described in "Everlasting ROBOT: the Marvin Attack" by Hubert Kario.

CVSS3: 5.9
0%
Низкий
около 1 года назад
fstec логотип
BDU:2024-04484

Уязвимость компонента OpenSSL Handler инструмента измерения пропускной способности сети Iperf3, позволяющая нарушителю получить доступ к конфиденциальной информации

CVSS3: 5.9
0%
Низкий
около 1 года назад

Уязвимостей на страницу