9.8
CVE-2019-5544
- EPSS 96.82%
- Veröffentlicht 06.12.2019 16:15:11
- Zuletzt bearbeitet 30.10.2025 19:52:21
- Erkennungen
OpenSLP as used in ESXi and the Horizon DaaS appliances has a heap overwrite issue. VMware has evaluated the severity of this issue to be in the Critical severity range with a maximum CVSSv3 base score of 9.8.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
VMware ≫ Horizon Daas Version >= 8.0.0 < 9.0.0.0
Redhat ≫ Enterprise Linux Desktop Version 6.0
Redhat ≫ Enterprise Linux Desktop Version 7.0
Redhat ≫ Enterprise Linux For Ibm Z Systems Version 6.0_s390x
Redhat ≫ Enterprise Linux For Ibm Z Systems Version 7.0_s390x
Redhat ≫ Enterprise Linux For Ibm Z Systems Eus Version 7.7_s390x
Redhat ≫ Enterprise Linux For Power Big Endian Version 6.0_ppc64
Redhat ≫ Enterprise Linux For Power Big Endian Version 7.0_ppc64
Redhat ≫ Enterprise Linux For Power Big Endian Eus Version 7.7_ppc64
Redhat ≫ Enterprise Linux For Power Little Endian Version 7.0_ppc64le
Redhat ≫ Enterprise Linux For Power Little Endian Eus Version 7.7_ppc64le
Redhat ≫ Enterprise Linux Server Version 6.0
Redhat ≫ Enterprise Linux Server Version 7.0
Redhat ≫ Enterprise Linux Server Aus Version 7.7
Redhat ≫ Enterprise Linux Server Eus Version 7.7
Redhat ≫ Enterprise Linux Server Tus Version 7.7
Redhat ≫ Enterprise Linux Workstation Version 6.0
Redhat ≫ Enterprise Linux Workstation Version 7.0
Fedoraproject ≫ Fedora Version 30
Fedoraproject ≫ Fedora Version 31
03.11.2021: CISA Known Exploited Vulnerabilities (KEV) Catalog
VMware ESXi and Horizon DaaS OpenSLP Heap-Based Buffer Overflow Vulnerability
SchwachstelleVMware ESXi and Horizon Desktop as a Service (DaaS) OpenSLP contains a heap-based buffer overflow vulnerability that allows an attacker with network access to port 427 to overwrite the heap of the OpenSLP service to perform remote code execution.
BeschreibungApply updates per vendor instructions.
Erforderliche Maßnahmen| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 96.82% | 0.999 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
| NIST | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
| CISA-ADP | 9.8 | 3.9 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
|
CWE-787 Out-of-bounds Write
The product writes data past the end, or before the beginning, of the intended buffer.
https://security.gentoo.org/glsa/202005-12
http://www.openwall.com/lists/oss-security/2019/12/10/2
http://www.openwall.com/lists/oss-security/2019/12/11/2
http://www.vmware.com/security/advisories/VMSA-2019-0022.html
https://access.redhat.com/errata/RHSA-2019:4240
https://access.redhat.com/errata/RHSA-2020:0199
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/DA3LYAJ2NRKMOZLZOQNDJ5TNQRFMWGHF/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/ZPXXJZLPLAQULBCJVI5NNWZ3PGWXGXWG/
https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2019-5544