CVE-2022-1289

A denial of service vulnerability was found in tildearrow Furnace. It has been classified as problematic. This is due to an incomplete fix of CVE-2022-1211. It is possible to initiate the attack remotely but it requires user interaction. The issue got fixed with the patch 0eb02422d5161767e9983bdaa5c429762d3477ce.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
4.3 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
VulDBCNA
4.3 MEDIUM
NETWORK
LOW
NONE
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
CVEADP
---
---
CISA-ADPADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 52%
VendorProductVersion
tildearrowfurnace
-
tildearrowfurnace
0.2
tildearrowfurnace
0.2.1
tildearrowfurnace
0.2.2
tildearrowfurnace
0.3
tildearrowfurnace
0.3.1
tildearrowfurnace
0.4
tildearrowfurnace
0.4.1
tildearrowfurnace
0.4.2
tildearrowfurnace
0.4.3
tildearrowfurnace
0.4.4
tildearrowfurnace
0.4.5
tildearrowfurnace
0.4.5:real
tildearrowfurnace
0.4.6
tildearrowfurnace
0.4.7
tildearrowfurnace
0.5
tildearrowfurnace
0.5.1
tildearrowfurnace
0.5.2
tildearrowfurnace
0.5.3
tildearrowfurnace
0.5.4
tildearrowfurnace
0.5.5
tildearrowfurnace
0.5.6
tildearrowfurnace
0.5.7
tildearrowfurnace
0.5.7:pre4
tildearrowfurnace
0.5.8
tildearrowfurnace
0.6:pre0
𝑥
= Vulnerable software versions