Known vulnerabilities in dropbear (Alpine package)
Vendor:
Alpine Linux Development Team
Software:
dropbear (Alpine package)
Software CPE:
cpe:2.3:o:alpine:dropbear_alpine_package:*:*:*:*:*:alpine_linux:*:*
Website:
https://alpinelinux.org/
Total vulnerabilities:
5
Public exploits:
1
Known exploited (KEV):
0
Highest CVSSv4 Score:
8.7
Breakdown by Severity Chart
Vulnerabilities (5)
| Vulnerability | CWE-ID | CSH Severity | Public Exploit | KEV | First fixed release | Published | Bulletins |
|---|---|---|---|---|---|---|---|
| #VU33987 - Improper Neutralization of CRLF Sequences ('CRLF Injection') CVE-2016-3116 |
CWE-93 | Medium | 2016.72-r0 | 05.08.2020 |
SB2016032204 SB2016032207 SB2016072025 and 8 more |
||
| #VU16946 - Improper Access Control CVE-2018-20685 |
CWE-284 | Low | 2018.76-r3, 2019.78-r1 | 10.01.2019 |
SB2019011505 SB2019012805 SB2019012904 and 14 more |
||
| #VU14821 - Exposure of sensitive information to an unauthorized actor CVE-2017-9079 |
CWE-200 | Low | 2017.75-r0 | 21.09.2018 |
SB2017051910 SB2017052001 SB2017061387 and 5 more |
||
| #VU14820 - Double Free CVE-2017-9078 |
CWE-415 | Low | 2017.75-r0 | 21.09.2018 |
SB2017051910 SB2017052001 SB2017061386 and 5 more |
||
| #VU14499 - Exposure of sensitive information to an unauthorized actor CVE-2018-15599 |
CWE-200 | Low | 2017.75-r1 | 22.08.2018 |
SB2018082303 SB2018091024 |