Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-85jm-9q7w-rpmg

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In the TCP implementation (gnrc_tcp) in RIOT through 2019.07, the parser for TCP options does not terminate on all inputs, allowing a denial-of-service, because sys/net/gnrc/transport_layer/tcp/gnrc_tcp_option.c has an infinite loop for an unknown zero-length option.

In the TCP implementation (gnrc_tcp) in RIOT through 2019.07, the parser for TCP options does not terminate on all inputs, allowing a denial-of-service, because sys/net/gnrc/transport_layer/tcp/gnrc_tcp_option.c has an infinite loop for an unknown zero-length option.

EPSS

Процентиль: 56%
0.00334
Низкий

Связанные уязвимости

CVSS3: 7.5
nvd
больше 6 лет назад

In the TCP implementation (gnrc_tcp) in RIOT through 2019.07, the parser for TCP options does not terminate on all inputs, allowing a denial-of-service, because sys/net/gnrc/transport_layer/tcp/gnrc_tcp_option.c has an infinite loop for an unknown zero-length option.

EPSS

Процентиль: 56%
0.00334
Низкий