endpointlabs / VulnerableDotNetCore3Project

.Net Core 3.0
0 stars 0 forks source link

CVE-2020-13988 KONDUKTO #95

Closed ckalpakoglu closed 1 year ago

ckalpakoglu commented 1 year ago

Due Date: 0001-01-01

A low severity vulnerability has been discovered in your project.

Project Name: infra_duplicate_test

Scanner Name: laceworkinfra

CVE: CVE-2020-13988

Exploitable: false


Proof: AccountID: 612851061211
VpcID: vpc-df9a23b5
Arch: amd64
PackageName: open-iscsi
PackageNamespace: ubuntu:20.04
PackageActive: 0
PackageVersion: 2.0.874-7.1ubuntu6.2
FixedVersion: 

Tool Description: An issue was discovered in Contiki through 3.0. An Integer Overflow exists in the uIP TCP/IP Stack component when parsing TCP MSS options of IPv4 network packets in uip_process in net/ipv4/uip.c.

Custom Description: test

Kondukto Link: https://82.kondukto.local/projects/636249c73ffe9321df1a2823/vulns/infra?page=1&perPage=15&id=in:63624a2e9538740807b6fd4b Deeplink: http://people.ubuntu.com/~ubuntu-security/cve/CVE-2020-13988

ckalpakoglu commented 1 year ago

The issue has been closed by Kondukto since it is marked as won't fix.