Language:
https://bugzilla.suse.com/1220068
https://bugzilla.suse.com/1220070
http://www.nessus.org/u?284eee1d
Severity: Medium
ID: 191447
File Name: suse_SU-2024-0726-1.nasl
Version: 1.0
Type: local
Agent: unix
Family: SuSE Local Security Checks
Published: 3/1/2024
Updated: 3/1/2024
Supported Sensors: Agentless Assessment, Continuous Assessment, Frictionless Assessment Agent, Frictionless Assessment AWS, Frictionless Assessment Azure, Nessus Agent, Nessus
Risk Factor: Low
Score: 3.6
Risk Factor: Medium
Base Score: 4.9
Temporal Score: 3.6
Vector: CVSS2#AV:L/AC:L/Au:N/C:N/I:N/A:C
CVSS Score Source: CVE-2024-26308
Risk Factor: Medium
Base Score: 5.5
Temporal Score: 4.8
Vector: CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Temporal Vector: CVSS:3.0/E:U/RL:O/RC:C
CPE: p-cpe:/a:novell:suse_linux:maven-doxia-module-xhtml5, p-cpe:/a:novell:suse_linux:maven-resolver-util, p-cpe:/a:novell:suse_linux:apache-commons-compress, p-cpe:/a:novell:suse_linux:xmvn-minimal, p-cpe:/a:novell:suse_linux:maven-javadoc-plugin, p-cpe:/a:novell:suse_linux:gradle-local, p-cpe:/a:novell:suse_linux:apache-commons-codec, p-cpe:/a:novell:suse_linux:maven, p-cpe:/a:novell:suse_linux:sbt-bootstrap, p-cpe:/a:novell:suse_linux:maven-resolver-named-locks, p-cpe:/a:novell:suse_linux:maven-doxia-sitetools, p-cpe:/a:novell:suse_linux:apache-commons-configuration2, p-cpe:/a:novell:suse_linux:maven-doxia-core, p-cpe:/a:novell:suse_linux:maven-doxia-module-xhtml, p-cpe:/a:novell:suse_linux:maven-resources-plugin, p-cpe:/a:novell:suse_linux:xmvn-install, p-cpe:/a:novell:suse_linux:xmvn-resolve, p-cpe:/a:novell:suse_linux:maven-resolver-transport-file, cpe:/o:novell:suse_linux:15, p-cpe:/a:novell:suse_linux:maven-doxia-module-apt, p-cpe:/a:novell:suse_linux:xmvn-mojo, p-cpe:/a:novell:suse_linux:maven-doxia-module-fo, p-cpe:/a:novell:suse_linux:apache-commons-io, p-cpe:/a:novell:suse_linux:maven-doxia-module-xdoc, p-cpe:/a:novell:suse_linux:maven-resolver-transport-http, p-cpe:/a:novell:suse_linux:maven-reporting-api, p-cpe:/a:novell:suse_linux:sbt, p-cpe:/a:novell:suse_linux:maven-lib, p-cpe:/a:novell:suse_linux:maven-resolver-connector-basic, p-cpe:/a:novell:suse_linux:xmvn-subst, p-cpe:/a:novell:suse_linux:maven-resolver-transport-wagon, p-cpe:/a:novell:suse_linux:maven-doxia-logging-api, p-cpe:/a:novell:suse_linux:maven-resolver-api, p-cpe:/a:novell:suse_linux:xmvn, p-cpe:/a:novell:suse_linux:maven-doxia-module-fml, p-cpe:/a:novell:suse_linux:xmvn-api, p-cpe:/a:novell:suse_linux:ivy-local, p-cpe:/a:novell:suse_linux:maven-local, p-cpe:/a:novell:suse_linux:maven-resolver-spi, p-cpe:/a:novell:suse_linux:maven-resolver-impl, p-cpe:/a:novell:suse_linux:maven-jar-plugin, p-cpe:/a:novell:suse_linux:maven-doxia-sink-api, p-cpe:/a:novell:suse_linux:xmvn-core, p-cpe:/a:novell:suse_linux:xmvn-connector
Required KB Items: Host/local_checks_enabled, Host/cpu, Host/SuSE/release, Host/SuSE/rpm-list
Exploit Ease: No known exploits are available
Patch Publication Date: 2/29/2024
Vulnerability Publication Date: 2/19/2024
CVE: CVE-2024-25710, CVE-2024-26308
SuSE: SUSE-SU-2024:0726-1