Vulnerability Name:

CVE-2020-26164 (CCN-189515)

Assigned:2020-10-07
Published:2020-10-07
Updated:2023-01-31
Summary:
CVSS v3 Severity:5.5 Medium (CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H)
4.8 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Local
Attack Complexity (AC): Low
Privileges Required (PR): Low
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
7.5 High (CCN CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H)
6.5 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C)
Exploitability Metrics:Attack Vector (AV): Network
Attack Complexity (AC): Low
Privileges Required (PR): None
User Interaction (UI): None
Scope:Scope (S): Unchanged
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): High
CVSS v2 Severity:4.9 Medium (CVSS v2 Vector: AV:L/AC:L/Au:N/C:N/I:N/A:C)
Exploitability Metrics:Access Vector (AV): Local
Access Complexity (AC): Low
Authentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Complete
7.8 High (CCN CVSS v2 Vector: AV:N/AC:L/Au:N/C:N/I:N/A:C)
Exploitability Metrics:Access Vector (AV): Network
Access Complexity (AC): Low
Athentication (Au): None
Impact Metrics:Confidentiality (C): None
Integrity (I): None
Availibility (A): Complete
Vulnerability Consequences:Denial of Service
References:Source: MITRE
Type: CNA
CVE-2020-26164

Source: cve@mitre.org
Type: Mailing List, Third Party Advisory
cve@mitre.org

Source: cve@mitre.org
Type: Mailing List, Third Party Advisory
cve@mitre.org

Source: cve@mitre.org
Type: Mailing List, Third Party Advisory
cve@mitre.org

Source: cve@mitre.org
Type: Mailing List, Third Party Advisory
cve@mitre.org

Source: cve@mitre.org
Type: Mailing List, Third Party Advisory
cve@mitre.org

Source: cve@mitre.org
Type: Mailing List
cve@mitre.org

Source: CCN
Type: Bugzilla - Bug 1176268
(CVE-2020-26164) AUDIT-0: CVE-2020-26164: kdeconnect-kde: review of default-enabled network service in openSUSE Leap 15.2, Tumbleweed

Source: cve@mitre.org
Type: Issue Tracking, Third Party Advisory
cve@mitre.org

Source: XF
Type: UNKNOWN
kde-cve202026164-dos(189515)

Source: cve@mitre.org
Type: Patch, Third Party Advisory
cve@mitre.org

Source: cve@mitre.org
Type: Patch, Third Party Advisory
cve@mitre.org

Source: cve@mitre.org
Type: Patch, Third Party Advisory
cve@mitre.org

Source: cve@mitre.org
Type: Patch, Third Party Advisory
cve@mitre.org

Source: cve@mitre.org
Type: Patch, Third Party Advisory
cve@mitre.org

Source: cve@mitre.org
Type: Patch, Third Party Advisory
cve@mitre.org

Source: cve@mitre.org
Type: Release Notes, Third Party Advisory
cve@mitre.org

Source: CCN
Type: KDE Project Security Advisory: 20201002
KDE Connect: packet manipulation can be exploited in a Denial of Service attack

Source: cve@mitre.org
Type: Third Party Advisory, Vendor Advisory
cve@mitre.org

Source: cve@mitre.org
Type: Product
cve@mitre.org

Source: cve@mitre.org
Type: Mailing List, Third Party Advisory
cve@mitre.org

Source: cve@mitre.org
Type: Third Party Advisory
cve@mitre.org

Oval Definitions
Definition IDClassTitleLast Modified
oval:org.opensuse.security:def:202026164
V
CVE-2020-26164
2022-06-30
oval:org.opensuse.security:def:112496
P
kdeconnect-kde-21.08.1-1.2 on GA media (Moderate)
2022-01-17
oval:org.opensuse.security:def:105989
P
kdeconnect-kde-21.08.1-1.2 on GA media (Moderate)
2021-10-01
oval:org.opensuse.security:def:64755
P
Security update for spectre-meltdown-checker (Moderate)
2021-08-27
oval:org.opensuse.security:def:64553
P
Security update for cpio (Important)
2021-08-16
oval:org.opensuse.security:def:63504
P
openconnect-7.08-6.9.1 on GA media (Moderate)
2021-08-10
oval:org.opensuse.security:def:63132
P
terraform-0.13.4-6.3.1 on GA media (Moderate)
2021-08-10
oval:org.opensuse.security:def:63366
P
python3-pywbem-0.11.0-2.21 on GA media (Moderate)
2021-08-10
oval:org.opensuse.security:def:63100
P
postgresql10-10.16-8.29.1 on GA media (Moderate)
2021-08-10
oval:org.opensuse.security:def:64511
P
Security update for python-httplib2 (Moderate)
2021-05-31
oval:org.opensuse.security:def:64648
P
Security update for bind (Important)
2021-02-18
oval:org.opensuse.security:def:64647
P
Security update for screen (Important)
2021-02-17
oval:org.opensuse.security:def:74619
P
Security update for gcc7 (Moderate)
2020-12-10
oval:org.opensuse.security:def:63603
P
Mesa-dri-nouveau-19.3.4-45.31 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:62685
P
libndp-devel-1.6-1.26 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:62885
P
ant-antlr-1.9.10-3.3.1 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:62684
P
libmp3lame-devel-3.100-1.33 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:63107
P
apache2-mod_wsgi-4.5.18-2.27 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:63310
P
vsftpd-3.0.3-7.7.9 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:64441
P
Security update for xen (Important)
2020-12-03
oval:org.opensuse.security:def:62708
P
libxcb-render0-32bit-1.13-3.3.1 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:63164
P
libshibsp-lite7-2.6.1-1.48 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:63104
P
apache2-mod_wsgi-4.5.18-2.27 on GA media (Moderate)
2020-12-03
oval:org.opensuse.security:def:74969
P
Security update for hylafax+ (Moderate)
2020-12-01
oval:org.opensuse.security:def:64399
P
libvmtools-devel on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:64057
P
Security update for libX11 (Important)
2020-12-01
oval:org.opensuse.security:def:63953
P
Security update for ed (Low)
2020-12-01
oval:org.opensuse.security:def:64857
P
Security update for python3 (Important)
2020-12-01
oval:org.opensuse.security:def:65027
P
Security update for glibc (Moderate)
2020-12-01
oval:org.opensuse.security:def:64297
P
libXRes1 on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:63730
P
Security update for glib2 (Important)
2020-12-01
oval:org.opensuse.security:def:75102
P
Security update for kdeconnect-kde (Important)
2020-12-01
oval:org.opensuse.security:def:64191
P
corosync on GA media (Moderate)
2020-12-01
oval:org.opensuse.security:def:63806
P
Security update for python (Moderate)
2020-12-01
oval:org.opensuse.security:def:74493
P
Security update for libssh (Important)
2020-12-01
oval:org.opensuse.security:def:64182
P
Security update for postgresql10 (Important)
2020-12-01
oval:org.opensuse.security:def:64915
P
Security update for cups (Important)
2020-12-01
oval:org.opensuse.security:def:100244
P
(Moderate)
2020-11-17
oval:org.opensuse.security:def:109721
P
Security update for kdeconnect-kde (Important)
2020-10-10
oval:org.opensuse.security:def:103064
P
Security update for kdeconnect-kde (Important)
2020-10-10
oval:org.opensuse.security:def:93531
P
Security update for kdeconnect-kde (Important)
2020-10-10
oval:org.opensuse.security:def:96374
P
Security update for kdeconnect-kde (Important)
2020-10-10
oval:org.opensuse.security:def:110243
P
Security update for kdeconnect-kde (Important)
2020-10-07
oval:org.opensuse.security:def:110797
P
Security update for kdeconnect-kde (Important)
2020-10-07
BACK