Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-cvcm-jhp7-5vqh

Опубликовано: 06 июн. 2025
Источник: github
Github: Не прошло ревью
CVSS4: 8.3

Описание

Uncontrolled resource consumption vulnerability in IDF v0.10.0-0C03-03 and ZLF v0.10.0-0C03-04. The devices improperly handle TLS requests associated with PROCOME sockets, so TLS requests sent to those PROCOME ports could cause the device to reboot and result in a denial of service. To exploit this vulnerability, PROCOME ports must be configured and active, with communications encryption active.

Uncontrolled resource consumption vulnerability in IDF v0.10.0-0C03-03 and ZLF v0.10.0-0C03-04. The devices improperly handle TLS requests associated with PROCOME sockets, so TLS requests sent to those PROCOME ports could cause the device to reboot and result in a denial of service. To exploit this vulnerability, PROCOME ports must be configured and active, with communications encryption active.

EPSS

Процентиль: 22%
0.00072
Низкий

8.3 High

CVSS4

Дефекты

CWE-400

Связанные уязвимости

nvd
8 месяцев назад

Uncontrolled resource consumption vulnerability in IDF v0.10.0-0C03-03 and ZLF v0.10.0-0C03-04. The devices improperly handle TLS requests associated with PROCOME sockets, so TLS requests sent to those PROCOME ports could cause the device to reboot and result in a denial of service. To exploit this vulnerability, PROCOME ports must be configured and active, with communications encryption active.

CVSS3: 8.2
fstec
8 месяцев назад

Уязвимость микропрограммного обеспечения реле дифференциальной защиты трансформатора IDF и реле дистанционной защиты линии ZLF, связанная с неконтролируемым расходом ресурсов, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 22%
0.00072
Низкий

8.3 High

CVSS4

Дефекты

CWE-400