Lucene search

K
cbl_marinerCBL MarinerCBLMARINER:10766
HistoryOct 05, 2022 - 11:33 p.m.

CVE-2021-35937 affecting package rpm for versions less than 4.18.0-1

2022-10-0523:33:44
CBL Mariner
2
cve-2021-35937
rpm package
version 4.18.0-1
upgrade
unix

CVSS3

6.4

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H

AI Score

7.2

Confidence

High

EPSS

0.001

Percentile

36.7%

CVE-2021-35937 affecting package rpm for versions less than 4.18.0-1. An upgraded version of the package is available that resolves this issue.

OSVersionArchitecturePackageVersionFilename
CBL-Mariner2.0allrpm< 4.18.0-1UNKNOWN

CVSS3

6.4

Attack Vector

LOCAL

Attack Complexity

HIGH

Privileges Required

HIGH

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:H/PR:H/UI:N/S:U/C:H/I:H/A:H

AI Score

7.2

Confidence

High

EPSS

0.001

Percentile

36.7%