Shadowsocks Shadowsocks-libev 3.3.2

CPE Details

Shadowsocks Shadowsocks-libev 3.3.2
3.3.2
2020-04-21
17h19 +00:00
2020-04-21
17h19 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:shadowsocks:shadowsocks-libev:3.3.2:*:*:*:*:*:*:*

Informations

Vendor

shadowsocks

Product

shadowsocks-libev

Version

3.3.2

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2019-5152 2019-12-18 13h31 +00:00 An exploitable information disclosure vulnerability exists in the network packet handling functionality of Shadowsocks-libev 3.3.2. When utilizing a Stream Cipher, a specially crafted set of network packets can cause an outbound connection from the server, resulting in information disclosure. An attacker can send arbitrary packets to trigger this vulnerability.
7.4
Haute
CVE-2019-5164 2019-12-03 20h56 +00:00 An exploitable code execution vulnerability exists in the ss-manager binary of Shadowsocks-libev 3.3.2. Specially crafted network packets sent to ss-manager can cause an arbitrary binary to run, resulting in code execution and privilege escalation. An attacker can send network packets to trigger this vulnerability.
7.8
Haute
CVE-2019-5163 2019-12-03 20h55 +00:00 An exploitable denial-of-service vulnerability exists in the UDPRelay functionality of Shadowsocks-libev 3.3.2. When utilizing a Stream Cipher and a local_address, arbitrary UDP packets can cause a FATAL error code path and exit. An attacker can send arbitrary UDP packets to trigger this vulnerability.
7.5
Haute