CVE-2023-38289

Rejected reason: Not a Security Issue.

Published: 2023-08-24 Last update: 2023-11-07 Assigner: [email protected] Source: [email protected]

Conclusion & alert: This CVE is rejected; it is not tracked as an active vulnerability. Mandatory action: Do not treat as an active exposure for patching queues—follow the CVE record status and authoritative vendor or program statements only.

Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.

Exploit prediction scoring system (EPSS) score for CVE-2023-38289

EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).

# Date Old EPSS score New EPSS score Delta (New - Old)
1 2023-08-25 0.04%

Full EPSS history (1 record total)

Common vulnerability scoring system (CVSS) metrics for CVE-2023-38289

CVSS metrics for this CVE.

No CVSS data in dataset for this CVE.

Weakness enumeration for CVE-2023-38289

OS Trackers for CVE-2023-38289

vendor priority summary link
suse medium CVE-2023-38289 severity moderate: SUSE including 243 source package names (1.1.0-1.1:libtiff5-4.0.9-150000.45.32.1, 1.21-36.4:libtiff5-4.0.9-150000.45.32.1, …), 372 product×package rows across 120 product lines (Container private-registry/harbor-nginx, Container private-registry/harbor-portal, … (120 product lines)): Known Affected 231, Fixed 141. https://www.suse.com/security/cve/CVE-2023-38289/
ubuntu medium CVE-2023-38289 medium priority: Ubuntu including 1 source packages (tiff), 7 status rows across 7 suites (bionic, focal, jammy, lunar, trusty, upstream, xenial): released 7. https://ubuntu.com/security/CVE-2023-38289

Affected software / configurations for CVE-2023-38289

Vendor Product Version Raw CPE
No affected products in dataset.

References for CVE-2023-38289

URL Tags
No references in dataset.
cvelogic Threat Intelligence