VDB
CVE-2023-1801
CVE-2023-1801
PUBLISHED
Es existiert eine Schwachstelle in tcpdump. Diese ist auf einen Out-of-Bounds-Schreibfehler im SMB Decoder zurückzuführen. Ein entfernter, anonymer Angreifer kann diese Schwachstelle ausnutzen, um einen Denial of Service Zustand herbeizuführen. Zur erfolgreichen Ausnutzung ist eine Benutzeraktion erforderlich.
EPSS 0.10% · 27.9th percentile
Risk Scores
EPSS Score
0.10%
27.9th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Meinberg | Meinberg LANTIME < V7.06.014 | |
| Fedora | Fedora Linux | |
| Open Source | Open Source tcpdump 4.99.3 |
Timeline
- Apr 7, 2023 CVE Published
- Apr 8, 2023 EPSS Score
- May 16, 2023 EPSS Score
- Jun 23, 2023 EPSS Score
- Jul 31, 2023 EPSS Score
- Sep 6, 2023 EPSS Score
- Oct 14, 2023 EPSS Score
- Nov 21, 2023 EPSS Score
- Dec 29, 2023 EPSS Score
- Mar 14, 2024 EPSS Score
- Apr 21, 2024 EPSS Score
- May 28, 2024 EPSS Score
References
- https://wid.cert-bund.de/.well-known/csaf/white/2023/wid-sec-w-2023-0888.json advisory
- https://wid.cert-bund.de/portal/wid/securityadvisory?name=WID-SEC-2023-0888 advisory
- https://www.meinbergglobal.com/english/news/meinberg-security-advisory-mbgsa-2023-03-lantime-firmware-v7-06-014.htm advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2023-a66bd67e34 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2023-de10e674ae advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2023-79335e1c60 advisory
- https://bodhi.fedoraproject.org/updates/FEDORA-2023-33906c7c4a advisory
- https://bugzilla.redhat.com/show_bug.cgi?id=2185498 advisory