目標達成 すべての支援者に感謝 — 100%達成しました!

目標: 1000 CNY · 調達済み: 1336 CNY

100%

CVE-2026-70367— stunnel socks代理SSRF绕过漏洞

CVSS 5.4 · Medium

Possible ATT&CK Techniques 1AI

T1190 · Exploit Public-Facing Application
新しい脆弱性情報の通知を購読するログインして購読

I. CVE-2026-70367の基本情報

脆弱性情報

脆弱性についてご質問がありますか?Shenlongの分析が参考になるかご確認ください!
Shenlongの10の質問を表示 ↗

高度な大規模言語モデル技術を使用していますが、出力には不正確または古い情報が含まれる可能性があります。Shenlongはデータの正確性を確保するよう努めていますが、実際の状況に基づいて検証・判断してください。

脆弱性タイトル
Stunnel: ssrf bypass in stunnel socks proxy via ipv4-mapped ipv6 loopback and unspecified addresses allows access to loopback-only services
ソース: CVE Program / CVE List V5
脆弱性説明
A Server-Side Request Forgery (SSRF) bypass vulnerability exists in “stunnel” 5.79 and lower when configured in SOCKS proxy mode. This flaw allows a client to bypass intended localhost restrictions by using IPv4-mapped IPv6 addresses (e.g., “::ffff:127.0.0.1”) or unspecified addresses ("0.0.0.0", "::"), enabling access to loopback-only services on the "stunnel" host that should not be network-reachable.
ソース: CVE Program / CVE List V5
CVSS情報
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:L/I:L/A:N
ソース: CVE Program / CVE List V5
脆弱性タイプ
服务端请求伪造(SSRF)
ソース: CVE Program / CVE List V5

影響を受ける製品

ベンダープロダクト影響を受けるバージョンCPE購読
Red HatRed Hat Enterprise Linux 10-cpe:/o:redhat:enterprise_linux:10
Red HatRed Hat Enterprise Linux 6-cpe:/o:redhat:enterprise_linux:6
Red HatRed Hat Enterprise Linux 7-cpe:/o:redhat:enterprise_linux:7
Red HatRed Hat Enterprise Linux 8-cpe:/o:redhat:enterprise_linux:8
Red HatRed Hat Enterprise Linux 9-cpe:/o:redhat:enterprise_linux:9

II. CVE-2026-70367の公開POC

#POC説明ソースリンクShenlongリンク
AI生成POCプレミアム

公開POCは見つかりませんでした。

ログインしてAI POCを生成

III. CVE-2026-70367のインテリジェンス情報

登录查看更多情报信息。

CVE-2026-70367 厂商安全公告 (2)

Same Patch Batch · Red Hat · 2026-08-04 · 7 CVEs total

CVE-2026-421697.3 HIGHGimp: gimp apng loader heap-buffer-overflow when fctl width exceeds ihdr width (file-png.c
CVE-2026-703686.5 MEDIUMStunnel: stack-based out-of-bounds read/write in stunnel s_vlog via oversized log message
CVE-2026-176144.4 MEDIUMWildfly-core: path traversal on wildfly domain controller
CVE-2026-185693.7 LOWKeycloak-services: keycloak-services: oidc backchannel logout accepts unsigned forged logo
CVE-2026-687443.3 LOWSssd: sssd: nss responder uninitialized heap disclosure in initgroups reply
CVE-2026-187392.5 LOWPopt-devel: popt-static: off-by-one in poptstuffargs

IV. 関連脆弱性

V. CVE-2026-70367へのコメント

まだコメントはありません


コメントを残す