語系:
Tenable 會為每個弱點計算動態 VPR。VPR 將弱點資訊與威脅情報和機器學習演算法加以結合,藉此預測攻擊者最有可能利用哪些弱點發動攻擊。查看詳細資訊: VPR 是什麼?它跟 CVSS 有何不同?
VPR 評分: 8.4
https://cwe.mitre.org/data/definitions/79.html
https://cwe.mitre.org/data/definitions/120.html
https://cwe.mitre.org/data/definitions/416.html
https://cwe.mitre.org/data/definitions/843.html
https://access.redhat.com/security/cve/CVE-2019-17005
https://access.redhat.com/security/cve/CVE-2019-17008
https://access.redhat.com/security/cve/CVE-2019-17010
https://access.redhat.com/security/cve/CVE-2019-17011
https://access.redhat.com/security/cve/CVE-2019-17012
https://access.redhat.com/security/cve/CVE-2019-17016
https://access.redhat.com/security/cve/CVE-2019-17017
https://access.redhat.com/security/cve/CVE-2019-17022
https://access.redhat.com/security/cve/CVE-2019-17024
https://access.redhat.com/security/cve/CVE-2019-17026
https://access.redhat.com/errata/RHSA-2020:0292
https://bugzilla.redhat.com/1779431
https://bugzilla.redhat.com/1779434
https://bugzilla.redhat.com/1779435
https://bugzilla.redhat.com/1779436
https://bugzilla.redhat.com/1779437
https://bugzilla.redhat.com/1788723
https://bugzilla.redhat.com/1788724
https://bugzilla.redhat.com/1788726
嚴重性: Medium
ID: 133384
檔案名稱: redhat-RHSA-2020-0292.nasl
版本: 1.5
類型: local
代理程式: unix
已發布: 2020/1/31
已更新: 2021/3/24
相依性: ssh_get_info.nasl
風險因素: Medium
VPR 評分: 8.4
CVSS 評分資料來源: CVE-2019-17026
基本分數: 6.8
時間分數: 5
媒介: AV:N/AC:M/Au:N/C:P/I:P/A:P
時間媒介: E:U/RL:OF/RC:C
基本分數: 8.8
時間分數: 7.7
媒介: CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
時間媒介: E:U/RL:O/RC:C
CPE: cpe:/o:redhat:rhel_e4s:8.0, p-cpe:/a:redhat:enterprise_linux:thunderbird, p-cpe:/a:redhat:enterprise_linux:thunderbird-debugsource
必要的 KB 項目: Host/local_checks_enabled, Host/RedHat/release, Host/RedHat/rpm-list, Host/cpu
可輕鬆利用: No known exploits are available
修補程式發佈日期: 2020/1/30
弱點發布日期: 2019/12/3
CVE: CVE-2019-17005, CVE-2019-17008, CVE-2019-17010, CVE-2019-17011, CVE-2019-17012, CVE-2019-17016, CVE-2019-17017, CVE-2019-17022, CVE-2019-17024, CVE-2019-17026