Записи collectd
5 опубликованных записей вендора collectd.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 1
- С записью об исправлении
- 80 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-119 Improper Restriction of Operations within the Bounds of a Memory Buffer1
- CWE-20 Improper Input Validation1
- CWE-399 Resource Management Errors1
- CWE-415 Double Free1
- CWE-835 Loop with Unreachable Exit Condition ('Infinite Loop')1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
5 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
40В плане | CVE-2017-16820Эксплойта нет | The csnmp_read_table function in snmp.c in the SNMP plugin in collectd before 5.6.3 is susceptible to a double free in a certain error case,collectd · collectd · CWE-415 | Критическая9,8 | — | 4,0 % | 14 нояб. 2017 г. |
38Наблюдать | CVE-2016-6254Эксплойта нет | Heap-based buffer overflow in the parse_packet function in network.c in collectd before 5.4.3 and 5.x before 5.5.2 allows remote attackers tcollectd · collectd · CWE-119 | Критическая9,1 | — | 5,7 % | 19 авг. 2016 г. |
31Наблюдать | CVE-2017-7401Эксплойта нет | Incorrect interaction of the parse_packet() and parse_part_sign_sha256() functions in network.c in collectd 5.7.1 and earlier allows remote collectd · collectd · CWE-835 | Высокая7,5 | — | 4,0 % | 3 апр. 2017 г. |
22Наблюдать | CVE-2017-18240Эксплойта нет | The Gentoo app-admin/collectd package before 5.7.2-r1 sets the ownership of PID file directory to the collectd account, which might allow locollectd · collectd · CWE-20 | Средняя5,5 | — | 0,4 % | 18 мар. 2018 г. |
21Наблюдать | CVE-2010-4336Эксплойта нет | The cu_rrd_create_file function (src/utils_rrdcreate.c) in collectd 4.x before 4.9.4 and before 4.10.2 allow remote attackers to cause a dencollectd · collectd · CWE-399 | Средняя5,0 | — | 2,1 % | 17 дек. 2010 г. |
- CVE-2017-1682040В плане
The csnmp_read_table function in snmp.c in the SNMP plugin in collectd before 5.6.3 is susceptible to a double free in a certain error case,
КритическаяCVSS 9,8Эксплойта нетEPSS 4 %collectd · collectd14 нояб. 2017 г.
- CVE-2016-625438Наблюдать
Heap-based buffer overflow in the parse_packet function in network.c in collectd before 5.4.3 and 5.x before 5.5.2 allows remote attackers t
КритическаяCVSS 9,1Эксплойта нетEPSS 6 %collectd · collectd19 авг. 2016 г.
- CVE-2017-740131Наблюдать
Incorrect interaction of the parse_packet() and parse_part_sign_sha256() functions in network.c in collectd 5.7.1 and earlier allows remote
ВысокаяCVSS 7,5Эксплойта нетEPSS 4 %collectd · collectd3 апр. 2017 г.
- CVE-2017-1824022Наблюдать
The Gentoo app-admin/collectd package before 5.7.2-r1 sets the ownership of PID file directory to the collectd account, which might allow lo
СредняяCVSS 5,5Эксплойта нетEPSS 0 %collectd · collectd18 мар. 2018 г.
- CVE-2010-433621Наблюдать
The cu_rrd_create_file function (src/utils_rrdcreate.c) in collectd 4.x before 4.9.4 and before 4.10.2 allow remote attackers to cause a den
СредняяCVSS 5,0Эксплойта нетEPSS 2 %collectd · collectd17 дек. 2010 г.