Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-p75q-98c9-c3h5

Опубликовано: 24 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 9.8

Описание

While processing server certificate from IPSec server, certificate validation for subject alternative name API can cause heap overflow which can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile

While processing server certificate from IPSec server, certificate validation for subject alternative name API can cause heap overflow which can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile

EPSS

Процентиль: 45%
0.00223
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-295
CWE-787

Связанные уязвимости

CVSS3: 9.8
nvd
больше 4 лет назад

While processing server certificate from IPSec server, certificate validation for subject alternative name API can cause heap overflow which can lead to memory corruption in Snapdragon Auto, Snapdragon Compute, Snapdragon Connectivity, Snapdragon Consumer IOT, Snapdragon Industrial IOT, Snapdragon IoT, Snapdragon Mobile

EPSS

Процентиль: 45%
0.00223
Низкий

9.8 Critical

CVSS3

Дефекты

CWE-295
CWE-787