Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-2jmv-v2x6-mmv8

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Off-by-one error in the XML signature feature in Apache XML Security for C++ 1.6.0, as used in Shibboleth before 2.4.3 and possibly other products, allows remote attackers to cause a denial of service (crash) via a signature using a large RSA key, which triggers a buffer overflow.

Off-by-one error in the XML signature feature in Apache XML Security for C++ 1.6.0, as used in Shibboleth before 2.4.3 and possibly other products, allows remote attackers to cause a denial of service (crash) via a signature using a large RSA key, which triggers a buffer overflow.

EPSS

Процентиль: 91%
0.07303
Низкий

Связанные уязвимости

ubuntu
больше 14 лет назад

Off-by-one error in the XML signature feature in Apache XML Security for C++ 1.6.0, as used in Shibboleth before 2.4.3 and possibly other products, allows remote attackers to cause a denial of service (crash) via a signature using a large RSA key, which triggers a buffer overflow.

nvd
больше 14 лет назад

Off-by-one error in the XML signature feature in Apache XML Security for C++ 1.6.0, as used in Shibboleth before 2.4.3 and possibly other products, allows remote attackers to cause a denial of service (crash) via a signature using a large RSA key, which triggers a buffer overflow.

debian
больше 14 лет назад

Off-by-one error in the XML signature feature in Apache XML Security f ...

EPSS

Процентиль: 91%
0.07303
Низкий