Lucene search

K
cbl_marinerCBL MarinerCBLMARINER:10077
HistoryJun 13, 2023 - 8:02 p.m.

CVE-2022-34903 affecting package gnupg2 2.2.20-3

2023-06-1320:02:41
CBL Mariner
5
cve-2022-34903
gnupg2
patch
available
unix

CVSS2

5.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:P/A:N

CVSS3

6.5

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:N

AI Score

9.9

Confidence

High

EPSS

0.004

Percentile

74.3%

CVE-2022-34903 affecting package gnupg2 2.2.20-3. A patched version of the package is available.

OSVersionArchitecturePackageVersionFilename
CBL-Mariner1.0allgnupg2< 2.2.20-4UNKNOWN

CVSS2

5.8

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

NONE

AV:N/AC:M/Au:N/C:P/I:P/A:N

CVSS3

6.5

Attack Vector

NETWORK

Attack Complexity

HIGH

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

LOW

Availability Impact

NONE

CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:U/C:H/I:L/A:N

AI Score

9.9

Confidence

High

EPSS

0.004

Percentile

74.3%