Corosync kayıtları
corosync üreticisine ait 5 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %80
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-190 Integer Overflow or Wraparound2
- CWE-121 Stack-based Buffer Overflow1
- CWE-253 Incorrect Check of Function Return Value1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
5 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
39İzleyin | CVE-2025-30472İstismar yok | Corosync through 3.1.9, if encryption is disabled or the attacker knows the encryption key, has a stack-based buffer overflow in orf_token_ecorosync · corosync · CWE-121 | Kritik9,8 | — | %0,5 | 21 Mar 2025 |
32İzleyin | CVE-2026-35091İstismar yok | Corosync: corosync: denial of service and information disclosure via crafted udp packetcorosync · corosync · CWE-253 | Yüksek8,2 | — | %1,1 | 1 Nis 2026 |
31İzleyin | CVE-2018-1084İstismar yok | corosync before version 2.4.4 is vulnerable to an integer overflow in exec/totemcrypto.c.corosync · corosync · CWE-190 | Yüksek7,5 | — | %3,1 | 12 Nis 2018 |
30İzleyin | CVE-2026-35092İstismar yok | Corosync: corosync: denial of service via integer overflow in join message validationcorosync · corosync · CWE-190 | Yüksek7,5 | — | %1,3 | 1 Nis 2026 |
21İzleyin | CVE-2013-0250İstismar yok | The init_nss_hash function in exec/totemcrypto.c in Corosync 2.0 before 2.3 does not properly initialize the HMAC key, which allows remote acorosync · corosync | Orta5,0 | — | %3,1 | 6 Haz 2014 |
- CVE-2025-3047239İzleyin
Corosync through 3.1.9, if encryption is disabled or the attacker knows the encryption key, has a stack-based buffer overflow in orf_token_e
KritikCVSS 9,8İstismar yokEPSS %0corosync · corosync21 Mar 2025
- CVE-2026-3509132İzleyin
Corosync: corosync: denial of service and information disclosure via crafted udp packet
YüksekCVSS 8,2İstismar yokEPSS %1corosync · corosync1 Nis 2026
- CVE-2018-108431İzleyin
corosync before version 2.4.4 is vulnerable to an integer overflow in exec/totemcrypto.c.
YüksekCVSS 7,5İstismar yokEPSS %3corosync · corosync12 Nis 2018
- CVE-2026-3509230İzleyin
Corosync: corosync: denial of service via integer overflow in join message validation
YüksekCVSS 7,5İstismar yokEPSS %1corosync · corosync1 Nis 2026
- CVE-2013-025021İzleyin
The init_nss_hash function in exec/totemcrypto.c in Corosync 2.0 before 2.3 does not properly initialize the HMAC key, which allows remote a
OrtaCVSS 5,0İstismar yokEPSS %3corosync · corosync6 Haz 2014