Lucene search

K
cveMitreCVE-2018-8049
HistoryApr 03, 2018 - 10:29 p.m.

CVE-2018-8049

2018-04-0322:29:00
CWE-20
mitre
web.nvd.nist.gov
25
cve-2018-8049
unisys
svg
denial of service
linux
aix
nvd

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

7.3

Confidence

High

EPSS

0.002

Percentile

60.0%

The Stealth endpoint in Unisys Stealth SVG 2.8.x, 3.0.x before 3.0.1999, 3.1.x, 3.2.x before 3.2.030, and 3.3.x before 3.3.016, when running on Linux and AIX, allows remote attackers to cause a denial of service (crash) via crafted packets.

Affected configurations

Nvd
Node
unisysstealth_svgRange3.03.0.1999
OR
unisysstealth_svgRange3.23.2.030
OR
unisysstealth_svgRange3.33.3.016
OR
unisysstealth_svgMatch2.8
AND
ibmaixMatch-
OR
linuxlinux_kernelMatch-
VendorProductVersionCPE
unisysstealth_svg*cpe:2.3:a:unisys:stealth_svg:*:*:*:*:*:*:*:*
unisysstealth_svg2.8cpe:2.3:a:unisys:stealth_svg:2.8:*:*:*:*:*:*:*
ibmaix-cpe:2.3:o:ibm:aix:-:*:*:*:*:*:*:*
linuxlinux_kernel-cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*

CVSS2

5

Attack Vector

NETWORK

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:L/Au:N/C:N/I:N/A:P

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

7.3

Confidence

High

EPSS

0.002

Percentile

60.0%

Related for CVE-2018-8049