Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9m99-gmcj-9g66

Опубликовано: 03 сент. 2022
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

wolfSSL through 5.0.0 allows an attacker to cause a denial of service and infinite loop in the client component by sending crafted traffic from a Machine-in-the-Middle (MITM) position. The root cause is that the client module accepts TLS messages that normally are only sent to TLS servers.

wolfSSL through 5.0.0 allows an attacker to cause a denial of service and infinite loop in the client component by sending crafted traffic from a Machine-in-the-Middle (MITM) position. The root cause is that the client module accepts TLS messages that normally are only sent to TLS servers.

EPSS

Процентиль: 67%
0.0055
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-835

Связанные уязвимости

CVSS3: 5.9
ubuntu
больше 3 лет назад

wolfSSL through 5.0.0 allows an attacker to cause a denial of service and infinite loop in the client component by sending crafted traffic from a Machine-in-the-Middle (MITM) position. The root cause is that the client module accepts TLS messages that normally are only sent to TLS servers.

CVSS3: 5.9
nvd
больше 3 лет назад

wolfSSL through 5.0.0 allows an attacker to cause a denial of service and infinite loop in the client component by sending crafted traffic from a Machine-in-the-Middle (MITM) position. The root cause is that the client module accepts TLS messages that normally are only sent to TLS servers.

CVSS3: 5.9
debian
больше 3 лет назад

wolfSSL through 5.0.0 allows an attacker to cause a denial of service ...

EPSS

Процентиль: 67%
0.0055
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-835