HIGH
Morgawr Muon handler.clj random values
Published Dec 27, 2022
7.5
HIGHCVSS 3.1
EPSS 0.65%
Description
A vulnerability has been found in Morgawr Muon 0.1.1 and classified as problematic. Affected by this vulnerability is an unknown functionality of the file src/muon/handler.clj. The manipulation leads to insufficiently random values. The attack can be launched remotely. Upgrading to version 0.2.0-indev is able to address this issue. The name of the patch is c09ed972c020f759110c707b06ca2644f0bacd7f. It is recommended to upgrade the affected component. The identifier VDB-216877 was assigned to this vulnerability.
Affected products
-
- Version 0.1.1StatusaffectedConstraints-
- Version
- 0.1.1
No data.
No Red Hat product state for this CVE.
No package ranges for this CVE.
Remediation
No remediation recorded yet.
Weaknesses (1)
References (4)
- https://github.com/Morgawr/Muon/commit/c09ed972c020f759110c707b06ca2644f0bacd7f patchThird Party Advisory
- https://github.com/Morgawr/Muon/issues/4 issue-trackingIssue TrackingPatchThird Party Advisory
- https://vuldb.com/?ctiid.216877 signaturepermissions-requiredThird Party Advisory
- https://vuldb.com/?id.216877 vdb-entryThird Party Advisory
| Link | Providers | Tags |
|---|---|---|
| https://github.com/Morgawr/Muon/commit/c09ed972c020f759110c707b06ca2644f0bacd7f | patchThird Party Advisory | |
| https://github.com/Morgawr/Muon/issues/4 | issue-trackingIssue TrackingPatchThird Party Advisory | |
| https://vuldb.com/?ctiid.216877 | signaturepermissions-requiredThird Party Advisory | |
| https://vuldb.com/?id.216877 | vdb-entryThird Party Advisory |
Change history (0)
No recorded changes yet.
Sources
CVE.org / MITRE
Status PUBLISHED
Assigner VulDB
Published Dec 27, 2022
Updated Aug 5, 2024
Reserved Dec 27, 2022
Link CVE-2019-25089
CISA Vulnrichment
Updated Jul 18, 2024