Lucene search

K
ubuntucveUbuntu.comUB:CVE-2024-32752
HistoryJun 06, 2024 - 12:00 a.m.

CVE-2024-32752

2024-06-0600:00:00
ubuntu.com
ubuntu.com
1
cve-2024-32752
communications
susceptible
machine-in-the-middle
attacks
door control
configuration
unix

8.8 High

CVSS4

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/SC:N/VI:H/SI:N/VA:H/SA:N

6.6 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

9.2%

Under certain circumstances communications between the ICU tool and an
iSTAR Pro door controller is susceptible to Machine-in-the-Middle attacks
which could impact door control and configuration.

Notes

Author Note
mdeslaur This has nothing to do with the ICU package in Ubuntu.

8.8 High

CVSS4

Attack Vector

NETWORK

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

NONE

CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:N/SC:N/VI:H/SI:N/VA:H/SA:N

6.6 Medium

AI Score

Confidence

Low

0.0004 Low

EPSS

Percentile

9.2%

Related for UB:CVE-2024-32752