ALPINE-CVE-2019-15162 PUBLISHED CVSS 5.300000190734863 MEDIUM

rpcapd/daemon.c in libpcap before 1.9.1 on non-Windows platforms provides details about why authentication failed, which might make it easier for attackers to enumerate valid usernames.

Risk Scores

CVSS v3.1
5.300000190734863
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

Affected Products

VendorProductVersions
Alpine:v3.21libpcap1.7.4-r0, 0, 1.0.0-r0
Alpine:v3.20libpcap1.6.2-r0, 1.9.0-r1, 1.9.0-r0
Alpine:v3.19libpcap1.0.0-r1, 1.9.0-r1, 1.9.0-r0
Alpine:v3.16libpcap1.8.1-r1, 1.4.0-r0, 1.3.0-r0
Alpine:v3.10libpcap0, 1.0.0-r3, 1.0.0-r2
Alpine:v3.23libpcap1.9.0-r1, 0, 1.0.0-r0
Alpine:v3.17libpcap1.0.0-r0, 1.0.0-r1, 1.0.0-r2
Alpine:v3.22libpcap1.3.0-r0, 1.9.0-r1, 1.9.0-r0
Alpine:v3.13libpcap1.9.0-r1, 0, 1.0.0-r0
Alpine:v3.12libpcap1.4.0-r0, 1.9.0-r1, 1.9.0-r0
Alpine:v3.15libpcap1.9.0-r1, 1.9.0-r0, 1.8.1-r1
Alpine:v3.18libpcap1.3.0-r0, 1.9.0-r1, 1.9.0-r0
Alpine:v3.14libpcap1.9.0-r1, 0, 1.0.0-r0

Timeline

References

Open in Interactive Console →