Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-38hh-r6wr-38f6

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allows remote attackers to cause a denial of service (crash) via a Hello packet containing a large size value, which triggers a buffer over-read in the HASHwithTransform::Update function in hash.cpp.

yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allows remote attackers to cause a denial of service (crash) via a Hello packet containing a large size value, which triggers a buffer over-read in the HASHwithTransform::Update function in hash.cpp.

EPSS

Процентиль: 90%
0.05836
Низкий

Дефекты

CWE-119

Связанные уязвимости

ubuntu
почти 18 лет назад

yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allows remote attackers to cause a denial of service (crash) via a Hello packet containing a large size value, which triggers a buffer over-read in the HASHwithTransform::Update function in hash.cpp.

nvd
почти 18 лет назад

yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, allows remote attackers to cause a denial of service (crash) via a Hello packet containing a large size value, which triggers a buffer over-read in the HASHwithTransform::Update function in hash.cpp.

debian
почти 18 лет назад

yaSSL 1.7.5 and earlier, as used in MySQL and possibly other products, ...

EPSS

Процентиль: 90%
0.05836
Низкий

Дефекты

CWE-119