Vulnerability Name:

CVE-2018-20860 (CCN-169634)

Assigned:2019-07-29
Published:2019-07-29
Updated:2023-03-03
Summary:
CVSS v3 Severity:6.5 Medium (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H)
5.7 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): Required
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
3.3 Low (CCN CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L)
2.9 Low (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): Required
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Low
CVSS v2 Severity:4.3 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Medium
Authentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
1.7 Low (CCN CVSS v2 Vector: AV:L/AC:L/Au:S/C:N/I:N/A:P)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Athentication (Au): Single_Instance
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Partial
Vulnerability Consequences:Denial of Service
References:Source: MITRE
Type: CNA
CVE-2018-20860

Source: cve@mitre.org
Type: Broken Link, Mailing List, Third Party Advisory
cve@mitre.org

Source: cve@mitre.org
Type: Broken Link, Mailing List, Third Party Advisory
cve@mitre.org

Source: XF
Type: UNKNOWN
libopenmpt-cve201820860-dos(169634)

Source: CCN
Type: libopenmpt Web site
libopenmpt security updates 0.3.11, 0.2.10635-beta34, 0.2.7561-beta20.5-p10, 0.2.7386-beta20.3-p13

Source: cve@mitre.org
Type: Patch, Release Notes
cve@mitre.org

Source: CCN
Type: WhiteSource Vulnerability Database
CVE-2018-20860

Oval Definitions
Definition IDClassTitleLast Modified
oval:org.opensuse.security:def:201820860
V
CVE-2018-20860
2023-06-22
oval:org.opensuse.security:def:7947
P
libmodplug-devel-0.3.28-2.13.1 on GA media (Moderate)
2023-06-12
oval:org.opensuse.security:def:51988
P
Security update for python-py (Moderate)
2023-01-26
oval:org.opensuse.security:def:3286
P
libxcb-dri2-0-1.10-4.3.1 on GA media (Moderate)
2022-06-28
oval:org.opensuse.security:def:3326
P
perl-DBD-mysql-4.021-12.5.2 on GA media (Moderate)
2022-06-28
oval:org.opensuse.security:def:3555
P
libXdmcp6-1.1.1-12.1 on GA media (Moderate)
2022-06-28
oval:org.opensuse.security:def:3274
P
libusbmuxd4-1.0.10-2.3 on GA media (Moderate)
2022-06-28
oval:org.opensuse.security:def:3543
P
lftp-4.7.4-3.6.1 on GA media (Moderate)
2022-06-28
oval:org.opensuse.security:def:2905
P
dbus-1-1.12.2-150400.16.52 on GA media (Moderate)
2022-06-22
oval:org.opensuse.security:def:94956
P
libmodplug-devel-0.3.28-2.13.1 on GA media (Moderate)
2022-06-22
oval:org.opensuse.security:def:2865
P
arm-trusted-firmware-2.6-150400.4.7 on GA media (Moderate)
2022-06-22
oval:org.opensuse.security:def:2895
P
cpp7-7.5.0+r278197-4.30.1 on GA media (Moderate)
2022-06-22
oval:org.opensuse.security:def:2889
P
clamav-0.103.5-3.35.1 on GA media (Moderate)
2022-06-22
oval:org.opensuse.security:def:2903
P
cyrus-sasl-2.1.27-150300.4.6.1 on GA media (Moderate)
2022-06-22
oval:org.opensuse.security:def:1238
P
Security update for the Linux Kernel (Important)
2022-06-14
oval:org.opensuse.security:def:1594
P
Security update for the Linux Kernel (Important)
2022-03-30
oval:org.opensuse.security:def:94065
P
(Moderate)
2022-03-24
oval:org.opensuse.security:def:112739
P
libopenmpt-devel-0.5.11-1.2 on GA media (Moderate)
2022-01-17
oval:org.opensuse.security:def:74395
P
Security update for ImageMagick (Moderate)
2021-12-10
oval:org.opensuse.security:def:1710
P
Security update for tomcat (Moderate)
2021-11-16
oval:org.opensuse.security:def:49081
P
Security update for Salt (Moderate)
2021-10-27
oval:org.opensuse.security:def:106211
P
libopenmpt-devel-0.5.11-1.2 on GA media (Moderate)
2021-10-01
oval:org.opensuse.security:def:2103
P
apache2-2.4.33-3.15.1 on GA media (Moderate)
2021-09-21
oval:org.opensuse.security:def:2112
P
dhcp-relay-4.3.5-4.15 on GA media (Moderate)
2021-09-21
oval:org.opensuse.security:def:2123
P
libecpg6-10.6-6.25 on GA media (Moderate)
2021-09-21
oval:org.opensuse.security:def:2146
P
rsyslog-module-gssapi-8.33.1-3.9.1 on GA media (Moderate)
2021-09-21
oval:org.opensuse.security:def:2156
P
vsftpd-3.0.3-7.7.9 on GA media (Moderate)
2021-09-21
oval:org.opensuse.security:def:2107
P
apache2-mod_security2-2.9.2-1.34 on GA media (Moderate)
2021-09-21
oval:org.opensuse.security:def:2121
P
libapr-util1-dbd-mysql-1.6.1-4.3.8 on GA media (Moderate)
2021-09-21
oval:org.opensuse.security:def:2158
P
yast2-rmt-1.2.1-1.25 on GA media (Moderate)
2021-09-21
oval:org.opensuse.security:def:2129
P
libshibsp-lite7-2.6.1-1.48 on GA media (Moderate)
2021-09-21
oval:org.opensuse.security:def:2151
P
squid-4.4-5.3.2 on GA media (Moderate)
2021-09-21
oval:org.opensuse.security:def:51657
P
Security update for gtk-vnc (Moderate)
2021-09-16
oval:org.opensuse.security:def:68524
P
Security update for aws-cli, python-boto3, python-botocore, python-service_identity, python-trustme, python-urllib3 (Moderate)
2021-08-23
oval:org.opensuse.security:def:2038
P
kernel-devel-azure-4.12.14-5.47.1 on GA media (Moderate)
2021-08-10
oval:org.opensuse.security:def:63506
P
perl-rrdtool-1.7.0-4.34 on GA media (Moderate)
2021-08-10
oval:org.opensuse.security:def:2036
P
kernel-azure-5.3.18-36.1 on GA media (Moderate)
2021-08-10
oval:org.opensuse.security:def:2044
P
terraform-provider-helm-1.3.2-6.3.1 on GA media (Moderate)
2021-08-10
oval:org.opensuse.security:def:71761
P
amavisd-new-2.11.1-6.3.1 on GA media (Moderate)
2021-08-09
oval:org.opensuse.security:def:72518
P
libmodplug-devel-0.3.19-2.10.1 on GA media (Moderate)
2021-08-09
oval:org.opensuse.security:def:72039
P
python3-PyYAML-5.4.1-1.1 on GA media (Moderate)
2021-08-09
oval:org.opensuse.security:def:100778
P
amavisd-new-2.11.1-6.3.1 on GA media (Moderate)
2021-08-09
oval:org.opensuse.security:def:71877
P
libXxf86dga-devel-1.1.4-1.24 on GA media (Moderate)
2021-08-09
oval:org.opensuse.security:def:101205
P
libmodplug-devel-0.3.19-2.10.1 on GA media (Moderate)
2021-08-09
oval:org.opensuse.security:def:62799
P
libmodplug-devel-0.3.19-2.10.1 on GA media (Moderate)
2021-08-09
oval:org.opensuse.security:def:48550
P
libsoup-2_4-1-2.54.1-4.5 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:48533
P
libpcsclite1-1.8.10-3.4 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:48873
P
libtag1-32bit-1.9.1-1.265 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:48635
P
tcpdump-4.5.1-10.1 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:48618
P
rsyslog-8.4.0-14.1 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:48958
P
libzzip-0-13-0.13.67-10.14.1 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:48534
P
libpng12-0-1.2.50-13.1 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:48675
P
gnome-online-accounts-3.10.5-1.11 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:48619
P
rtkit-0.11_git201205151338-8.14 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:48760
P
typelib-1_0-EvinceDocument-3_0-3.10.3-1.213 on GA media (Moderate)
2021-06-08
oval:org.opensuse.security:def:66745
P
Security update for ImageMagick (Moderate)
2021-04-20
oval:org.opensuse.security:def:51179
P
Security update for python (Moderate)
2021-03-16
oval:org.opensuse.security:def:69996
P
Security update for kernel-firmware (Important)
2021-03-03
oval:org.opensuse.security:def:68802
P
Security update for the Linux Kernel (Important)
2021-02-10
oval:org.opensuse.security:def:51719
P
Security update for the Linux Kernel (Live Patch 34 for SLE 12 SP3) (Important)
2021-02-10
oval:org.opensuse.security:def:51156
P
Security update for the Linux Kernel (Live Patch 35 for SLE 12 SP2) (Important)
2021-02-10
oval:org.opensuse.security:def:51926
P
Security update for MozillaFirefox (Important)
2021-01-29
oval:org.opensuse.security:def:74269
P
Security update for webkit2gtk3 (Important)
2020-12-17
oval:org.opensuse.security:def:51094
P
Security update for spice-gtk (Important)
2020-12-16
oval:org.opensuse.security:def:2061
P
freeradius-server-3.0.16-1.41 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:107444
P
libmodplug-devel-0.3.19-2.10.1 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:62661
P
libavcodec57-3.4.2-9.2 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:2071
P
libmysqld-devel-10.2.15-1.3 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:62461
P
libopus-devel-1.2.1-1.29 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:63142
P
apache2-mod_nss-1.0.17-1.28 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:2101
P
xen-4.10.1_04-1.4 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:2022
P
apache2-mod_wsgi-4.5.18-2.27 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:2549
P
libvncclient0-0.9.10-4.14.1 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:2073
P
librelp-devel-1.2.15-1.15 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:2545
P
libpurple-2.13.0-10.105 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:62683
P
libmodplug-devel-0.3.19-2.10.1 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:62484
P
perl-File-Path-2.150000-1.22 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:49014
P
libiso9660-8-0.90-6.3.1 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:2066
P
krb5-plugin-kdb-ldap-1.15.2-4.25 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:117002
P
libmodplug-devel-0.3.19-2.10.1 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:62460
P
libopenjpeg1-1.5.2-2.28 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:62940
P
cargo-1.36.0-7.1 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:63280
P
libsaml-devel-2.6.1-1.31 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:2018
P
apache2-mod_wsgi-4.5.18-2.27 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:72155
P
libcups2-32bit-2.2.7-1.24 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:2016
P
python3-keystoneclient-3.15.0-2.33 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:2027
P
kernel-devel-azure-4.12.14-5.47.1 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:72402
P
libmodplug-devel-0.3.19-2.10.1 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:2555
P
transfig-3.2.6a-4.6.1 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:2581
P
Security update for xen (Important)
2020-12-02
oval:org.opensuse.security:def:2636
P
Security update for wireshark (Moderate)
2020-12-02
oval:org.opensuse.security:def:2596
P
Security update for containerd, docker and go (Important)
2020-12-02
oval:org.opensuse.security:def:2711
P
Security update for openexr (Moderate)
2020-12-02
oval:org.opensuse.security:def:2626
P
Security update for containerd, docker, docker-runc, golang-github-docker-libnetwork (Moderate)
2020-12-02
oval:org.opensuse.security:def:2824
P
Security update for MozillaFirefox (Important)
2020-12-02
oval:org.opensuse.security:def:2850
P
Security update for python (Important)
2020-12-02
oval:org.opensuse.security:def:2796
P
Security update for openexr (Moderate)
2020-12-02
oval:org.opensuse.security:def:2721
P
Security update for libopenmpt (Moderate)
2020-12-02
oval:org.opensuse.security:def:2567
P
Security update for wireshark (Moderate)
2020-12-02
oval:org.opensuse.security:def:2587
P
Security update for libssh2_org (Moderate)
2020-12-02
oval:org.opensuse.security:def:2620
P
Security update for podman (Moderate)
2020-12-02
oval:org.opensuse.security:def:2634
P
Security update for exiv2 (Moderate)
2020-12-02
oval:org.opensuse.security:def:2818
P
Security update for bluez (Moderate)
2020-12-02
oval:org.opensuse.security:def:2806
P
Security update for libopenmpt (Moderate)
2020-12-02
oval:org.opensuse.security:def:2814
P
Security update for ImageMagick (Moderate)
2020-12-02
oval:org.opensuse.security:def:2836
P
Security update for texlive-filesystem (Moderate)
2020-12-02
oval:org.opensuse.security:def:2856
P
Security update for MozillaFirefox (Important)
2020-12-02
oval:org.opensuse.security:def:49667
P
libgypsy-devel on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:65177
P
Security update for libopenmpt (Moderate)
2020-12-01
oval:org.opensuse.security:def:49063
P
c-ares-devel on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:50321
P
Security update for binutils (Moderate)
2020-12-01
oval:org.opensuse.security:def:49745
P
libtool-32bit on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:49208
P
libopus0 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:50481
P
Security update for MozillaFirefox (Important)
2020-12-01
oval:org.opensuse.security:def:49108
P
gpg2 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:49559
P
libmicrohttpd-devel on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:50381
P
Security update for libvirt (Moderate)
2020-12-01
oval:org.opensuse.security:def:51241
P
Security update for libopenmpt (Moderate)
2020-12-01
oval:org.opensuse.security:def:49493
P
vorbis-tools on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:64329
P
libgtk-vnc-2_0-0 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:73436
P
libmodplug-devel on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:49814
P
ant on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:50277
P
Security update for webkit2gtk3 (Moderate)
2020-12-01
oval:org.opensuse.security:def:66653
P
xen-libs on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:49649
P
libSoundTouch0 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:49625
P
fwupd on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:50142
P
dia on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:65455
P
Security update for libopenmpt (Moderate)
2020-12-01
oval:org.opensuse.security:def:49332
P
socat on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:63967
P
Security update for tomcat (Important)
2020-12-01
oval:org.opensuse.security:def:49830
P
dom4j on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:49477
P
newt-devel on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:64175
P
Security update for openldap2 (Important)
2020-12-01
oval:org.opensuse.security:def:49193
P
libmicrohttpd12 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:70101
P
libmodplug-devel on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:49828
P
cups-ddk on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:50650
P
Security update for wavpack (Low)
2020-12-01
oval:org.opensuse.security:def:49578
P
libsrtp-devel on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:50083
P
memcached on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:50546
P
Security update for gd (Moderate)
2020-12-01
oval:org.opensuse.security:def:68421
P
Security update for ucode-intel (Moderate)
2020-12-01
oval:org.opensuse.security:def:49734
P
cups-ddk on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:50411
P
Security update for wireshark (Moderate)
2020-12-01
oval:org.opensuse.security:def:73318
P
socat on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:49818
P
blktrace on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:49679
P
libmodplug-devel on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:49062
P
bzip2 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:49413
P
gtk2-data on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:50308
P
Security update for wireshark (Moderate)
2020-12-01
oval:org.opensuse.security:def:49262
P
libxerces-c-3_1 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:49714
P
rtkit on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:65087
P
Security update for the Linux Kernel (Important)
2020-12-01
oval:org.opensuse.security:def:49657
P
libavcodec57 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:49582
P
libusbmuxd-devel on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:50052
P
bind on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:63833
P
Security update for sqlite3 (Important)
2020-12-01
oval:org.opensuse.security:def:64217
P
axis on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:68699
P
Security update for java-1_8_0-ibm (Important)
2020-12-01
oval:org.opensuse.security:def:50212
P
xorg-x11-server-wayland on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:49350
P
update-alternatives on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:64073
P
Security update for perl-DBI (Important)
2020-12-01
oval:org.opensuse.security:def:49099
P
gdk-pixbuf-loader-rsvg on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:49903
P
apache2-mod_wsgi on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:49331
P
shim on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:49682
P
libnetpbm-devel on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:50577
P
Security update for java-11-openjdk (Important)
2020-12-01
oval:org.opensuse.security:def:49347
P
ucode-intel on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:49799
P
perl-Config-IniFiles on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:65365
P
Security update for gnome-shell (Moderate)
2020-12-01
oval:org.opensuse.security:def:49926
P
python2-pycrypto on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:110019
P
Security update for libopenmpt (Moderate)
2019-09-28
oval:org.opensuse.security:def:90525
P
Security update for libopenmpt (Moderate)
2019-09-23
oval:org.opensuse.security:def:97786
P
Security update for libopenmpt (Moderate)
2019-09-23
oval:org.opensuse.security:def:90821
P
Security update for libopenmpt (Moderate)
2019-09-23
oval:org.opensuse.security:def:104180
P
Security update for libopenmpt (Moderate)
2019-09-23
oval:org.opensuse.security:def:104476
P
Security update for libopenmpt (Moderate)
2019-09-23
oval:org.opensuse.security:def:97490
P
Security update for libopenmpt (Moderate)
2019-09-23
oval:com.ubuntu.bionic:def:2018208600000000
V
CVE-2018-20860 on Ubuntu 18.04 LTS (bionic) - low.
2019-07-30
BACK