VDB
BDU%3A2020-01356
BDU%3A2020-01356
PUBLISHED
CVSS 7.599999904632568 HIGH
Уязвимость функции tcpdump.c:get_next_file() утилиты для анализа сетевого трафика tcpdump, позволяющая нарушителю получить несанкционированный доступ к информации и оказать воздействие на ее целостность и доступность
Risk Scores
CVSS 2.0
7.599999904632568
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| ООО «РусБИТех-Астра», Red Hat Inc., Canonical Ltd., Сообщество свободного программного обеспечения, Fedora Project, Novell Inc., F5 Networks, Inc., The Tcpdump team | Astra Linux Special Edition (запись в едином реестре российских программ №369), Red Hat Enterprise Linux, Ubuntu, Debian GNU/Linux, Fedora, SUSE Linux Enterprise Module for Basesystem, OpenSUSE Leap, Suse Linux Enterprise Server, Traffix SDC, tcpdump, SUSE Linux Enterprise High Performance Computing |
Timeline
- Apr 10, 2020 CVE Published
- Oct 27, 2021 CVE Updated
References
- https://www.suse.com/security/cve/CVE-2018-14879/ url
- https://lists.debian.org/debian-lts-announce/2019/10/msg00015.html url
- https://people.canonical.com/~ubuntu-security/cve/2018/CVE-2018-14879.html url
- https://wiki.astralinux.ru/astra-linux-se15-bulletin-20201201SE15 url
- https://wiki.astralinux.ru/astra-linux-se16-bulletin-20211008SE16 url
- https://access.redhat.com/security/cve/cve-2018-14879 advisory
- https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/62XY42U6HY3H2APR5EHNWCZ7SAQNMMJN/ advisory
- https://github.com/the-tcpdump-group/tcpdump/commit/9ba91381954ad325ea4fd26b9c65a8bd9a2a85b6 advisory