Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-h9j8-4v77-hmr3

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

ARM mbed TLS before 2.1.11, before 2.7.2, and before 2.8.0 has a buffer over-read in ssl_parse_server_key_exchange() that could cause a crash on invalid input.

ARM mbed TLS before 2.1.11, before 2.7.2, and before 2.8.0 has a buffer over-read in ssl_parse_server_key_exchange() that could cause a crash on invalid input.

EPSS

Процентиль: 70%
0.00652
Низкий

7.5 High

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 8 лет назад

ARM mbed TLS before 2.1.11, before 2.7.2, and before 2.8.0 has a buffer over-read in ssl_parse_server_key_exchange() that could cause a crash on invalid input.

CVSS3: 7.5
nvd
почти 8 лет назад

ARM mbed TLS before 2.1.11, before 2.7.2, and before 2.8.0 has a buffer over-read in ssl_parse_server_key_exchange() that could cause a crash on invalid input.

CVSS3: 7.5
debian
почти 8 лет назад

ARM mbed TLS before 2.1.11, before 2.7.2, and before 2.8.0 has a buffe ...

EPSS

Процентиль: 70%
0.00652
Низкий

7.5 High

CVSS3

Дефекты

CWE-125