Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-9rqj-h33r-qgm8

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью

Описание

In Contiki 3.0, Telnet option negotiation is mishandled. During negotiation between a server and a client, the server may fail to give the WILL/WONT or DO/DONT response for DO and WILL commands because of improper handling of exception condition, which leads to property violations and denial of service. Specifically, a server sometimes sends no response, because a fixed buffer space is available for all responses and that space may have been exhausted.

In Contiki 3.0, Telnet option negotiation is mishandled. During negotiation between a server and a client, the server may fail to give the WILL/WONT or DO/DONT response for DO and WILL commands because of improper handling of exception condition, which leads to property violations and denial of service. Specifically, a server sometimes sends no response, because a fixed buffer space is available for all responses and that space may have been exhausted.

EPSS

Процентиль: 56%
0.00334
Низкий

Дефекты

CWE-754

Связанные уязвимости

CVSS3: 7.5
nvd
больше 4 лет назад

In Contiki 3.0, Telnet option negotiation is mishandled. During negotiation between a server and a client, the server may fail to give the WILL/WONT or DO/DONT response for DO and WILL commands because of improper handling of exception condition, which leads to property violations and denial of service. Specifically, a server sometimes sends no response, because a fixed buffer space is available for all responses and that space may have been exhausted.

EPSS

Процентиль: 56%
0.00334
Низкий

Дефекты

CWE-754