Логотип exploitDog
bind:CVE-2019-10638
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2019-10638

Количество 22

Количество 22

ubuntu логотип

CVE-2019-10638

почти 6 лет назад

In the Linux kernel before 5.1.7, a device can be tracked by an attacker using the IP ID values the kernel produces for connection-less protocols (e.g., UDP and ICMP). When such traffic is sent to multiple destination IP addresses, it is possible to obtain hash collisions (of indices to the counter array) and thereby obtain the hashing key (via enumeration). An attack may be conducted by hosting a crafted web page that uses WebRTC or gQUIC to force UDP traffic to attacker-controlled IP addresses.

CVSS3: 6.5
EPSS: Низкий
redhat логотип

CVE-2019-10638

почти 6 лет назад

In the Linux kernel before 5.1.7, a device can be tracked by an attacker using the IP ID values the kernel produces for connection-less protocols (e.g., UDP and ICMP). When such traffic is sent to multiple destination IP addresses, it is possible to obtain hash collisions (of indices to the counter array) and thereby obtain the hashing key (via enumeration). An attack may be conducted by hosting a crafted web page that uses WebRTC or gQUIC to force UDP traffic to attacker-controlled IP addresses.

CVSS3: 3.7
EPSS: Низкий
nvd логотип

CVE-2019-10638

почти 6 лет назад

In the Linux kernel before 5.1.7, a device can be tracked by an attacker using the IP ID values the kernel produces for connection-less protocols (e.g., UDP and ICMP). When such traffic is sent to multiple destination IP addresses, it is possible to obtain hash collisions (of indices to the counter array) and thereby obtain the hashing key (via enumeration). An attack may be conducted by hosting a crafted web page that uses WebRTC or gQUIC to force UDP traffic to attacker-controlled IP addresses.

CVSS3: 6.5
EPSS: Низкий
msrc логотип

CVE-2019-10638

10 месяцев назад

CVSS3: 6.5
EPSS: Низкий
debian логотип

CVE-2019-10638

почти 6 лет назад

In the Linux kernel before 5.1.7, a device can be tracked by an attack ...

CVSS3: 6.5
EPSS: Низкий
github логотип

GHSA-wr6f-49rm-hx88

около 3 лет назад

In the Linux kernel before 5.1.7, a device can be tracked by an attacker using the IP ID values the kernel produces for connection-less protocols (e.g., UDP and ICMP). When such traffic is sent to multiple destination IP addresses, it is possible to obtain hash collisions (of indices to the counter array) and thereby obtain the hashing key (via enumeration). An attack may be conducted by hosting a crafted web page that uses WebRTC or gQUIC to force UDP traffic to attacker-controlled IP addresses.

EPSS: Низкий
fstec логотип

BDU:2019-02915

около 6 лет назад

Уязвимость хеш-функции «jhash» ядра операционной системы Linux, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 6.5
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1854-1

почти 6 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1716-1

почти 6 лет назад

Security update for the Linux Kernel

EPSS: Низкий
oracle-oval логотип

ELSA-2020-5837

почти 5 лет назад

ELSA-2020-5837: Unbreakable Enterprise kernel security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2019:1757-1

почти 6 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1852-1

почти 6 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1851-1

почти 6 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1829-1

почти 6 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1823-2

почти 6 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1823-1

почти 6 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:1855-1

почти 6 лет назад

Security update for the Linux Kernel

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:2069-1

почти 6 лет назад

Security update for the Linux Kernel for Azure

EPSS: Низкий
oracle-oval логотип

ELSA-2020-1016

около 5 лет назад

ELSA-2020-1016: kernel security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2019:2450-1

больше 5 лет назад

Security update for the Linux Kernel

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2019-10638

In the Linux kernel before 5.1.7, a device can be tracked by an attacker using the IP ID values the kernel produces for connection-less protocols (e.g., UDP and ICMP). When such traffic is sent to multiple destination IP addresses, it is possible to obtain hash collisions (of indices to the counter array) and thereby obtain the hashing key (via enumeration). An attack may be conducted by hosting a crafted web page that uses WebRTC or gQUIC to force UDP traffic to attacker-controlled IP addresses.

CVSS3: 6.5
1%
Низкий
почти 6 лет назад
redhat логотип
CVE-2019-10638

In the Linux kernel before 5.1.7, a device can be tracked by an attacker using the IP ID values the kernel produces for connection-less protocols (e.g., UDP and ICMP). When such traffic is sent to multiple destination IP addresses, it is possible to obtain hash collisions (of indices to the counter array) and thereby obtain the hashing key (via enumeration). An attack may be conducted by hosting a crafted web page that uses WebRTC or gQUIC to force UDP traffic to attacker-controlled IP addresses.

CVSS3: 3.7
1%
Низкий
почти 6 лет назад
nvd логотип
CVE-2019-10638

In the Linux kernel before 5.1.7, a device can be tracked by an attacker using the IP ID values the kernel produces for connection-less protocols (e.g., UDP and ICMP). When such traffic is sent to multiple destination IP addresses, it is possible to obtain hash collisions (of indices to the counter array) and thereby obtain the hashing key (via enumeration). An attack may be conducted by hosting a crafted web page that uses WebRTC or gQUIC to force UDP traffic to attacker-controlled IP addresses.

CVSS3: 6.5
1%
Низкий
почти 6 лет назад
msrc логотип
CVSS3: 6.5
1%
Низкий
10 месяцев назад
debian логотип
CVE-2019-10638

In the Linux kernel before 5.1.7, a device can be tracked by an attack ...

CVSS3: 6.5
1%
Низкий
почти 6 лет назад
github логотип
GHSA-wr6f-49rm-hx88

In the Linux kernel before 5.1.7, a device can be tracked by an attacker using the IP ID values the kernel produces for connection-less protocols (e.g., UDP and ICMP). When such traffic is sent to multiple destination IP addresses, it is possible to obtain hash collisions (of indices to the counter array) and thereby obtain the hashing key (via enumeration). An attack may be conducted by hosting a crafted web page that uses WebRTC or gQUIC to force UDP traffic to attacker-controlled IP addresses.

1%
Низкий
около 3 лет назад
fstec логотип
BDU:2019-02915

Уязвимость хеш-функции «jhash» ядра операционной системы Linux, позволяющая нарушителю раскрыть защищаемую информацию

CVSS3: 6.5
1%
Низкий
около 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1854-1

Security update for the Linux Kernel

почти 6 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1716-1

Security update for the Linux Kernel

почти 6 лет назад
oracle-oval логотип
ELSA-2020-5837

ELSA-2020-5837: Unbreakable Enterprise kernel security update (IMPORTANT)

почти 5 лет назад
suse-cvrf логотип
openSUSE-SU-2019:1757-1

Security update for the Linux Kernel

почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1852-1

Security update for the Linux Kernel

почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1851-1

Security update for the Linux Kernel

почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1829-1

Security update for the Linux Kernel

почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1823-2

Security update for the Linux Kernel

почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1823-1

Security update for the Linux Kernel

почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:1855-1

Security update for the Linux Kernel

почти 6 лет назад
suse-cvrf логотип
SUSE-SU-2019:2069-1

Security update for the Linux Kernel for Azure

почти 6 лет назад
oracle-oval логотип
ELSA-2020-1016

ELSA-2020-1016: kernel security, bug fix, and enhancement update (MODERATE)

около 5 лет назад
suse-cvrf логотип
SUSE-SU-2019:2450-1

Security update for the Linux Kernel

больше 5 лет назад

Уязвимостей на страницу