CVE-2015-143028.08.2017, 15:29Buffer overflow in xymon 4.3.17-1.EnginsightProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVectorNISTNIST9.8 CRITICALNETWORKLOWNONECVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HmitreCNA------CVEADP------Base ScoreCVSS 3.xEPSS ScorePercentile: 61%VendorProductVersionxymonxymon4.3.17-1𝑥= Vulnerable software versionsDebian ReleasesDebian ProductCodenamexymonbookworm4.3.30-1fixedbullseye4.3.30-1fixedsqueezenot-affectedwheezynot-affectedsid4.3.30-4fixedtrixie4.3.30-4fixedUbuntu ReleasesUbuntu ProductCodenamexymondisconot-affectedcosmicnot-affectedbionicnot-affectedartfulnot-affectedzestynot-affectedyakketynot-affectedxenialnot-affectedwilynot-affectedvividnot-affectedutopicignoredtrustydnepreciseignoredlucidignoredCommon Weakness EnumerationCWE-119 - Improper Restriction of Operations within the Bounds of a Memory BufferThe software performs operations on a memory buffer, but it can read from or write to a memory location that is outside of the intended boundary of the buffer.Referenceshttp://www.openwall.com/lists/oss-security/2015/01/31/4http://www.openwall.com/lists/oss-security/2015/01/31/4