Aller au contenu
Appaloosa Scout
Sélection de la langue
fr en

Vulnérabilité · NVD

CVE-2012-4929

CVE-2012-4929, sévérité Sévérité en attente (CVSS —) : 3 apps suivies concernées, toutes corrigées ou à statut indéterminable en version courante.

Gravité (CVSS)
-
Exploitation
4.3 %

EPSS, prédiction à 30 jours

Apps suivies
3
Encore exposées
0

EN The TLS protocol 1.2 and earlier, as used in Mozilla Firefox, Google Chrome, Qt, and other products, can encrypt compressed data without properly obfuscating the length of the unencrypted data, which allows man-in-the-middle attackers to obtain plaintext HTTP headers by observing length differences during a series of guesses in which a string in an HTTP request potentially matches an unknown string in an HTTP header, aka a "CRIME" attack.

EPSS 4.35% au-dessus de la médiane percentile 90.5%

Apps suivies liées à cette CVE

Pour chaque app : la plage affectée, la version qui corrige, et où en est l'app suivie aujourd'hui.

  • Chrome macOS com.google.Chrome
    Affecté - Corrigé - Dernière suivie - indéterminé
  • Google Chrome Windows winget:Google.Chrome
    Affecté - Corrigé - Dernière suivie 152.0.7977.65 indéterminé
  • Mozilla Firefox Windows winget:Mozilla.Firefox
    Affecté - Corrigé - Dernière suivie 154.0.1 indéterminé
Configurations CPE vulnérables (3)
Vendor Produit Versions
google chrome
Toutes plateformes (wildcard)
-
google chrome
Toutes plateformes (wildcard)
-
mozilla firefox
Toutes plateformes (wildcard)
-
Voir sur NVD ↗