Lucene search

K
redosRedosROS-20240404-18
HistoryApr 04, 2024 - 12:00 a.m.

ROS-20240404-18

2024-04-0400:00:00
redos.red-soft.ru
9
openvas
database management
vulnerability
mariadb
resource consumption
denial of service
remote attacker
unix
port 3306
port 4567

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

6.8

Confidence

Low

EPSS

0.002

Percentile

52.2%

Vulnerability in the OpenVAS database management system’s OpenVAS scanning and vulnerability management tool
MariaDB is associated with uncontrolled resource consumption when connecting to ports 3306 and 4567. Exploitation
exploitation of the vulnerability could allow a remote attacker to cause a denial of service.

OSVersionArchitecturePackageVersionFilename
redos7.3x86_64mariadb< 10.11.6-1UNKNOWN

CVSS3

7.5

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

AI Score

6.8

Confidence

Low

EPSS

0.002

Percentile

52.2%