← volver
CVE-2021-31806

CVE-2021-31806

40Vexday Risk Score

Corrige pronto. Ella tiene exploit funcional público.

ssvc Attendepss 96%
de la publicación al arma0 días
Publicada en NVD27 may
metasploit27 may
probabilidad de explotación
96%top 1% de las CVE
explotación observada
noninguna fuente lo reporta
Lo que declaran los fabricantes (VEX)

Declaraciones oficiales de los fabricantes en formato CSAF/VEX: si su producto está afectado, ya corregido o descartado — y por qué. Es afirmación del fabricante, no juicio de Vexday.

Afectado
2 productos (8 componentes)
Red Hat Enterprise Linux 6 · Red Hat Enterprise Linux 7
workaround: Mitigation for this issue is either not available or the currently available options do not meet the Red Hat Product Security criteria comprising ease of use and deployment, applicability to widespread installation base or stability.
Corregido
1 producto (30 componentes)
Red Hat Enterprise Linux AppStream (v. 8)
No afectado
1 producto (2 componentes) — porque el código vulnerable no está presente en el producto
Red Hat Enterprise Linux 9
An issue was discovered in Squid before 4.15 and 5.x before 5.0.6. Due to a memory-management bug, it is vulnerable to a Denial of Service attack (against all clients using the proxy) via HTTP Range request processing.
Productos afectados
n/a · n/a