Lucene search

K
cve[email protected]CVE-2017-17833
HistoryApr 23, 2018 - 6:29 p.m.

CVE-2017-17833

2018-04-2318:29:00
CWE-119
web.nvd.nist.gov
91
cve-2017-17833
openslp
memory corruption
denial of service
remote code execution
nvd

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

9.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

9.5 High

AI Score

Confidence

High

0.008 Low

EPSS

Percentile

81.8%

OpenSLP releases in the 1.0.2 and 1.1.0 code streams have a heap-related memory corruption issue which may manifest itself as a denial-of-service or a remote code-execution vulnerability.

Affected configurations

NVD
Node
openslpopenslpMatch1.0.2
OR
openslpopenslpMatch1.1.0
Node
debiandebian_linuxMatch7.0
Node
canonicalubuntu_linuxMatch14.04lts
OR
canonicalubuntu_linuxMatch16.04lts
Node
redhatenterprise_linux_desktopMatch6.0
OR
redhatenterprise_linux_desktopMatch7.0
OR
redhatenterprise_linux_serverMatch6.0
OR
redhatenterprise_linux_serverMatch7.0
OR
redhatenterprise_linux_server_ausMatch7.6
OR
redhatenterprise_linux_server_eusMatch7.5
OR
redhatenterprise_linux_server_eusMatch7.6
OR
redhatenterprise_linux_server_tusMatch7.6
OR
redhatenterprise_linux_workstationMatch6.0
OR
redhatenterprise_linux_workstationMatch7.0
Node
lenovothinkserver_rd350g_firmwareMatch-
AND
lenovothinkserver_rd350gMatch-
Node
lenovothinkserver_rd350x_firmwareMatch-
AND
lenovothinkserver_rd350xMatch-
Node
lenovothinkserver_rd450x_firmwareMatch-
AND
lenovothinkserver_rd450xMatch-
Node
lenovothinksystem_hr630x_firmwareMatch-
AND
lenovothinksystem_hr630xMatch-
Node
lenovothinksystem_hr650x_firmwareMatch-
AND
lenovothinksystem_hr650xMatch-
Node
lenovothinksystem_sr630_firmwareMatch-
AND
lenovothinksystem_sr630Match-
Node
lenovoflex_system_fc3171_8gb_san_switch_firmwareRange<9.1.13.02.00
AND
lenovoflex_system_fc3171_8gb_san_switchMatch-
Node
lenovostorage_n3310_firmwareRange<4.53.351
AND
lenovostorage_n3310Match-
Node
lenovostorage_n4610_firmwareRange<4.53.351
AND
lenovostorage_n4610Match-
Node
lenovobm_nextscale_fan_power_controllerRange<24p-2.15
OR
lenovocmmRange<1.8.0
OR
lenovofan_power_controllerRange<30r-1.13
OR
lenovoimm1Range<1.55
OR
lenovoimm2Range<4.70
OR
lenovoxclarity_administratorRange<1.4.0
Node
lenovothinkserver_rd340_firmwareRange<50.00
AND
lenovothinkserver_rd340Match-
Node
lenovothinkserver_rd350_firmwareRange<4.53.351
AND
lenovothinkserver_rd350Match-
Node
lenovothinkserver_rd440_firmwareRange50.00
AND
lenovothinkserver_rd440Match-
Node
lenovothinkserver_rd450_firmwareRange<4.53.351
AND
lenovothinkserver_rd450Match-
Node
lenovothinkserver_rd550_firmwareRange<4.53.351
AND
lenovothinkserver_rd550Match-
Node
lenovothinkserver_rd540_firmwareRange<50.00
AND
lenovothinkserver_rd540Match-
Node
lenovothinkserver_rd640_firmwareRange<50.00
AND
lenovothinkserver_rd640Match-
Node
lenovothinkserver_rd650_firmwareRange<4.53.351
AND
lenovothinkserver_rd650Match-
Node
lenovothinkserver_rq750_firmwareRange<1.40
AND
lenovothinkserver_rq750Match-
Node
lenovothinkserver_rs160_firmwareRange<2.32
AND
lenovothinkserver_rs160Match-
Node
lenovothinkserver_sd350_firmwareMatch-
AND
lenovothinkserver_sd350Match-
Node
lenovothinkserver_td340_firmwareRange<46.00
AND
lenovothinkserver_td340Match-
Node
lenovothinkserver_td350_firmwareRange<4.53.351
AND
lenovothinkserver_td350Match-
Node
lenovothinkserver_ts460_firmwareRange<2.32
AND
lenovothinkserver_ts460Match-

7.5 High

CVSS2

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:P/I:P/A:P

9.8 High

CVSS3

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

9.5 High

AI Score

Confidence

High

0.008 Low

EPSS

Percentile

81.8%