collectd 3.9.0

CPE Details

collectd 3.9.0
3.9.0
2018-12-31
15h07 +00:00
2018-12-31
15h07 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:collectd:collectd:3.9.0:*:*:*:*:*:*:*

Informations

Vendor

collectd

Product

collectd

Version

3.9.0

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2017-18240 2018-03-19 01h00 +00:00 The Gentoo app-admin/collectd package before 5.7.2-r1 sets the ownership of PID file directory to the collectd account, which might allow local users to kill arbitrary processes by leveraging access to this account for PID file modification before a root script sends a SIGKILL (when the service is stopped).
5.5
Moyen
CVE-2017-16820 2017-11-14 20h00 +00:00 The csnmp_read_table function in snmp.c in the SNMP plugin in collectd before 5.6.3 is susceptible to a double free in a certain error case, which could lead to a crash (or potentially have other impact).
9.8
Critique
CVE-2017-7401 2017-04-03 12h00 +00:00 Incorrect interaction of the parse_packet() and parse_part_sign_sha256() functions in network.c in collectd 5.7.1 and earlier allows remote attackers to cause a denial of service (infinite loop) of a collectd instance (configured with "SecurityLevel None" and with empty "AuthFile" options) via a crafted UDP packet.
7.5
Haute