4.3

CVE-2011-5268

connection.c in Bip before 0.8.9 does not properly close sockets, which allows remote attackers to cause a denial of service (file descriptor consumption and crash) via multiple failed SSL handshakes, a different vulnerability than CVE-2013-4550.  NOTE: this issue was SPLIT from CVE-2013-4550 because it is a different type of issue.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
DuckcorpBip Version <= 0.8.8
DuckcorpBip Version0.8.0
DuckcorpBip Version0.8.0 Updaterc0
DuckcorpBip Version0.8.0 Updaterc1
DuckcorpBip Version0.8.1
DuckcorpBip Version0.8.2
DuckcorpBip Version0.8.3
DuckcorpBip Version0.8.4
DuckcorpBip Version0.8.5
DuckcorpBip Version0.8.6
DuckcorpBip Version0.8.7
FedoraprojectFedora Version18
FedoraprojectFedora Version19
FedoraprojectFedora Version20
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.86% 0.729
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:N/A:P