Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-w8m4-8r7x-cjvp

Опубликовано: 13 мая 2022
Источник: github
Github: Не прошло ревью
CVSS3: 7.5

Описание

ARM mbed TLS before 2.1.11, before 2.7.2, and before 2.8.0 has a buffer over-read in ssl_parse_server_psk_hint() that could cause a crash on invalid input.

ARM mbed TLS before 2.1.11, before 2.7.2, and before 2.8.0 has a buffer over-read in ssl_parse_server_psk_hint() that could cause a crash on invalid input.

EPSS

Процентиль: 60%
0.00403
Низкий

7.5 High

CVSS3

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 7.5
ubuntu
почти 8 лет назад

ARM mbed TLS before 2.1.11, before 2.7.2, and before 2.8.0 has a buffer over-read in ssl_parse_server_psk_hint() that could cause a crash on invalid input.

CVSS3: 7.5
nvd
почти 8 лет назад

ARM mbed TLS before 2.1.11, before 2.7.2, and before 2.8.0 has a buffer over-read in ssl_parse_server_psk_hint() that could cause a crash on invalid input.

CVSS3: 7.5
debian
почти 8 лет назад

ARM mbed TLS before 2.1.11, before 2.7.2, and before 2.8.0 has a buffe ...

EPSS

Процентиль: 60%
0.00403
Низкий

7.5 High

CVSS3

Дефекты

CWE-125