8.8
CVE-2021-39230
- EPSS 0.74%
- Veröffentlicht 21.09.2021 17:15:09
- Zuletzt bearbeitet 21.11.2024 06:18:57
- Quelle security-advisories@github.com
- CVE-Watchlists
- Unerledigt
Error in JPNS kernel of Butter
Butter is a system usability utility. Due to a kernel error the JPNS kernel is being discontinued. Affected users are recommend to update to the Trinity kernel. There are no workarounds.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Butter Project ≫ Butter Version < 1.5
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.74% | 0.497 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 6.5 | 2.8 | 3.6 |
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:N/I:N/A:P
|
| security-advisories@github.com | 8.8 | 2 | 6 |
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H
|
CWE-20 Improper Input Validation
The product receives input or data, but it does not validate or incorrectly validates that the input has the properties that are required to process the data safely and correctly.
https://github.com/FrankEnderman/Butter/commit/a4fd717e848306f04f2823ea5f617e4da9f5bbdb
https://github.com/FrankEnderman/Butter/security/advisories/GHSA-4538-4g86-xf6j