keepalived kayıtları
keepalived üreticisine ait 6 yayımlanmış kayıt.
Araştırmacı profili
- KEV’e giren
- 0 · %0
- Silahlaştırılmış
- 0 · %0
- Pre-auth RCE
- 0
- Düzeltme kaydı olan
- %100
- Yayından KEV’e ortanca
- KEV’e giren kayıt yok
Tekrar eden sınıflar
- CWE-200 Exposure of Sensitive Information to an Unauthorized Actor2
- CWE-264 Permissions, Privileges, and Access Controls1
- CWE-59 Improper Link Resolution Before File Access ('Link Following')1
- CWE-787 Out-of-bounds Write1
Bu üreticide en sık görülen zafiyet sınıfları: nereye bakmalı.
CWESaldırı profili
Tüm kayıtlar
6 kayıt| Aksiyon | CVE | Zafiyet | Ciddiyet | KEV | EPSS | Yayın |
|---|---|---|---|---|---|---|
40Planlayın | CVE-2018-19115İstismar yok | keepalived before 2.0.7 has a heap-based buffer overflow when parsing HTTP status codes resulting in DoS or possibly unspecified other impackeepalived · keepalived · CWE-787 | Kritik9,8 | — | %3,7 | 8 Kas 2018 |
31İzleyin | CVE-2018-19045İstismar yok | keepalived 2.0.8 used mode 0666 when creating new temporary files upon a call to PrintData or PrintStats, potentially leaking sensitive infokeepalived · keepalived · CWE-200 | Yüksek7,5 | — | %2,4 | 8 Kas 2018 |
21İzleyin | CVE-2021-44225İstismar yok | In Keepalived through 2.2.4, the D-Bus policy does not sufficiently restrict the message destination, allowing any user to inspect and manipkeepalived · keepalived | Orta5,4 | — | %1,1 | 25 Kas 2021 |
18İzleyin | CVE-2018-19044İstismar yok | keepalived 2.0.8 didn't check for pathnames with symlinks when writing data to a temporary file upon a call to PrintData or PrintStats.keepalived · keepalived · CWE-59 | Orta4,7 | — | %0,5 | 8 Kas 2018 |
18İzleyin | CVE-2018-19046İstismar yok | keepalived 2.0.8 didn't check for existing plain files when writing data to a temporary file upon a call to PrintData or PrintStats.keepalived · keepalived · CWE-200 | Orta4,7 | — | %0,4 | 8 Kas 2018 |
14İzleyin | CVE-2011-1784İstismar yok | The pidfile_write function in core/pidfile.c in keepalived 1.2.2 and earlier uses 0666 permissions for the (1) keepalived.pid, (2) checkers.keepalived · keepalived · CWE-264 | Düşük3,6 | — | %0,4 | 20 May 2011 |
- CVE-2018-1911540Planlayın
keepalived before 2.0.7 has a heap-based buffer overflow when parsing HTTP status codes resulting in DoS or possibly unspecified other impac
KritikCVSS 9,8İstismar yokEPSS %4keepalived · keepalived8 Kas 2018
- CVE-2018-1904531İzleyin
keepalived 2.0.8 used mode 0666 when creating new temporary files upon a call to PrintData or PrintStats, potentially leaking sensitive info
YüksekCVSS 7,5İstismar yokEPSS %2keepalived · keepalived8 Kas 2018
- CVE-2021-4422521İzleyin
In Keepalived through 2.2.4, the D-Bus policy does not sufficiently restrict the message destination, allowing any user to inspect and manip
OrtaCVSS 5,4İstismar yokEPSS %1keepalived · keepalived25 Kas 2021
- CVE-2018-1904418İzleyin
keepalived 2.0.8 didn't check for pathnames with symlinks when writing data to a temporary file upon a call to PrintData or PrintStats.
OrtaCVSS 4,7İstismar yokEPSS %1keepalived · keepalived8 Kas 2018
- CVE-2018-1904618İzleyin
keepalived 2.0.8 didn't check for existing plain files when writing data to a temporary file upon a call to PrintData or PrintStats.
OrtaCVSS 4,7İstismar yokEPSS %0keepalived · keepalived8 Kas 2018
- CVE-2011-178414İzleyin
The pidfile_write function in core/pidfile.c in keepalived 1.2.2 and earlier uses 0666 permissions for the (1) keepalived.pid, (2) checkers.
DüşükCVSS 3,6İstismar yokEPSS %0keepalived · keepalived20 May 2011