Skip to content
Appaloosa Scout
Language selector
fr en

Vulnerability · NVD

CVE-2020-25705

CVE-2020-25705 : high severity (CVSS 7.4). No tracked catalog app is linked to this CVE.

Severity (CVSS)
7.4

Base CVSS ; severity is a vendor rating (different scale)

Exploitation
6.7 %

EPSS, predicted over 30 days

Tracked apps
0
Still exposed
0
Vendor bulletin scale : NVD CVSS pending

A flaw in ICMP packets in the Linux kernel may allow an attacker to quickly scan open UDP ports. This flaw allows an off-path remote attacker to effectively bypass source port UDP randomization. Software that relies on UDP source port randomization are indirectly affected as well on the Linux Based Products (RUGGEDCOM RM1224: All versions between v5.0 and v6.4 SCALANCE M-800: All versions between v5.0 and v6.4 SCALANCE S615: All versions between v5.0 and v6.4 SCALANCE SC-600: All versions prior to v2.1.3 SCALANCE W1750D: v8.3.0.1 v8.6.0 and v8.7.0 SIMATIC Cloud Connect 7: All versions SIMATIC MV500 Family: All versions SIMATIC NET CP 1243-1 (incl. SIPLUS variants): Versions 3.1.39 and later SIMATIC NET CP 1243-7 LTE EU: Version

EPSS 6.69% above median percentile 93.7%

OS versions that fix this CVE

This CVE is resolved by the following OS security releases. Update the OS to at least the listed version.

View on NVD ↗

Manage your fleet with Appaloosa

Appaloosa pushes OS updates, apps and policies to your Windows, macOS, iOS and Android devices from one console.

Discover Appaloosa MDM