7.8

CVE-2007-2640

LibTMCG before 1.1.1 does not perform a range check to avoid "trivial group generators," which allows attackers to obtain sensitive information about private cards.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Heiko Stamer ≫ Libtmcg Version 1.0
Heiko Stamer ≫ Libtmcg Version 1.0.1
Heiko Stamer ≫ Libtmcg Version 1.1
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 1.36% 0.681
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
NIST 7.8 10 6.9
AV:N/AC:L/Au:N/C:C/I:N/A:N
Es wurden noch keine Informationen zu CWE veröffentlicht.
http://osvdb.org/34772
http://savannah.nongnu.org/forum/forum.php?forum_id=4847
Patch
http://secunia.com/advisories/25317
http://www.securityfocus.com/bid/23930
Patch
http://www.vupen.com/english/advisories/2007/1760
https://exchange.xforce.ibmcloud.com/vulnerabilities/34235