Lucene search

K
cbl_marinerCBL MarinerCBLMARINER:31304
HistoryJun 12, 2024 - 10:23 p.m.

CVE-2023-44487 affecting package cri-tools for versions less than 1.28.0-2

2024-06-1222:23:00
CBL Mariner
4
cve-2023-44487
cri-tools
patch
unix

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

8

Confidence

High

EPSS

0.813

Percentile

98.4%

CVE-2023-44487 affecting package cri-tools for versions less than 1.28.0-2. An upgraded version of the package is available that resolves this issue.

OSVersionArchitecturePackageVersionFilename
CBL-Mariner2.0allcri-tools< 1.28.0-2UNKNOWN

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

8

Confidence

High

EPSS

0.813

Percentile

98.4%