imPC@ndo IT

Tracker / CVE-2019-5544

CVE-2019-5544

Ransomware Critical 9.8

OpenSLP as used in ESXi and the Horizon DaaS appliances has a heap overwrite issue. VMware has evaluated the severity of this issue to be in the Critical severity range with a maximum CVSSv3 base score of 9.8.

Affected products and versions

fedoraproject fedora
openslp openslp · … → 2.0.0
redhat enterprise_linux_desktop
redhat enterprise_linux_for_ibm_z_systems
redhat enterprise_linux_for_ibm_z_systems_eus
redhat enterprise_linux_for_power_big_endian
redhat enterprise_linux_for_power_big_endian_eus
redhat enterprise_linux_for_power_little_endian
redhat enterprise_linux_for_power_little_endian_eus
redhat enterprise_linux_server
redhat enterprise_linux_server_aus
redhat enterprise_linux_server_eus
redhat enterprise_linux_server_tus
redhat enterprise_linux_workstation
vmware esxi
vmware horizon_daas · 8.0.0 → 9.0.0.0

Analysis

This page is not indexable yet.Until it carries original analysis — what it actually exposes, how to check in two minutes whether a system was touched, what to do if it was — the page stays noindex. The database decides that, not the template.

References