Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-qc4v-fv24-r267

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

wolfSSL CyaSSL before 2.9.4 allows remote attackers to cause a denial of service (NULL pointer dereference) via (1) a request for the peer certificate when a certificate parsing failure occurs or (2) a client_key_exchange message when the ephemeral key is not found.

wolfSSL CyaSSL before 2.9.4 allows remote attackers to cause a denial of service (NULL pointer dereference) via (1) a request for the peer certificate when a certificate parsing failure occurs or (2) a client_key_exchange message when the ephemeral key is not found.

EPSS

Процентиль: 75%
0.00877
Низкий

Дефекты

CWE-20

Связанные уязвимости

nvd
почти 12 лет назад

wolfSSL CyaSSL before 2.9.4 allows remote attackers to cause a denial of service (NULL pointer dereference) via (1) a request for the peer certificate when a certificate parsing failure occurs or (2) a client_key_exchange message when the ephemeral key is not found.

debian
почти 12 лет назад

wolfSSL CyaSSL before 2.9.4 allows remote attackers to cause a denial ...

EPSS

Процентиль: 75%
0.00877
Низкий

Дефекты

CWE-20