VulnerabilityModified
CVE-2020-4067
There is a leak of information between different client connections.
HIGH 7.5EPSS 1.90%
Does this matter?
High impact if exploited, but EPSS currently rates exploitation as unlikely (1.90%). Schedule it in the normal patch cycle and watch for a rise in EPSS or a public exploit.
Description
In coturn before version 4.5.1.3, there is an issue whereby STUN/TURN response buffer is not initialized properly. There is a leak of information between different client connections. One client (an attacker) could use their connection to intelligently query coturn to get interesting bytes in the padding bytes from the connection of another client. This has been fixed in 4.5.1.3.
- CVSS 3.1
- 7.5 HIGHCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N
- EPSS
- 1.90% probability · 78th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-665
- Affected
- coturn project/coturn · debian/debian linux · fedoraproject/fedora · canonical/ubuntu linux · opensuse/leap
- Source
- security-advisories@github.com
References
- http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00010.htmlMailing List, Third Party Advisory
- https://github.com/coturn/coturn/blob/aab60340b201d55c007bcdc853230f47aa2dfdf1/ChangeLog#L15Release Notes
- https://github.com/coturn/coturn/issues/583Issue Tracking, Third Party Advisory
- https://github.com/coturn/coturn/security/advisories/GHSA-c8r8-8vp5-6gcmThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2020/07/msg00002.htmlMailing List, Third Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5G35UBNSRLL6SYRTODYTMBJ65TLQILUM/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TNJJO77ZLGGFJWNUGP6VDG5HPAC5UDBK/
- https://usn.ubuntu.com/4415-1/Third Party Advisory
- https://www.debian.org/security/2020/dsa-4711Third Party Advisory
- http://lists.opensuse.org/opensuse-security-announce/2020-07/msg00010.htmlMailing List, Third Party Advisory
- https://github.com/coturn/coturn/blob/aab60340b201d55c007bcdc853230f47aa2dfdf1/ChangeLog#L15Release Notes
- https://github.com/coturn/coturn/issues/583Issue Tracking, Third Party Advisory
- https://github.com/coturn/coturn/security/advisories/GHSA-c8r8-8vp5-6gcmThird Party Advisory
- https://lists.debian.org/debian-lts-announce/2020/07/msg00002.htmlMailing List, Third Party Advisory
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/5G35UBNSRLL6SYRTODYTMBJ65TLQILUM/
- https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/TNJJO77ZLGGFJWNUGP6VDG5HPAC5UDBK/
- https://usn.ubuntu.com/4415-1/Third Party Advisory
- https://www.debian.org/security/2020/dsa-4711Third Party Advisory
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.