PT-2007-5737 · Mcstrans+1 · Mcstrans+1

Publicado

2007-11-07

·

Atualizado

2017-09-29

·

CVE-2007-4570

CVSS v2.0

1.9

Baixa

VetorAV:L/AC:M/Au:N/C:N/I:N/A:P
Name of the Vulnerable Software and Affected Versions mcstrans version 0.2.3
Description The issue is related to algorithmic complexity in the MCS translation daemon, allowing local users to cause a denial of service by triggering a temporary daemon outage. This can be achieved by providing a large range of compartments in sensitivity labels.
Recommendations For mcstrans version 0.2.3, consider restricting the range of compartments in sensitivity labels to prevent the denial of service. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

DoS

RCE

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2007-4570
RHSA-2007:0542
RHSA-2007_0542

Produtos afetados

Red Hat
Mcstrans