Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-x3p6-wwcw-9gmv

Опубликовано: 13 нояб. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.3

Описание

A Heap buffer overflow in the server-site handshake implementation in Real Time Logic SharkSSL 09.09.24 and earlier allows a remote attacker to trigger a Denial-of-Service via a malformed TLS Client Key Exchange message.

A Heap buffer overflow in the server-site handshake implementation in Real Time Logic SharkSSL 09.09.24 and earlier allows a remote attacker to trigger a Denial-of-Service via a malformed TLS Client Key Exchange message.

EPSS

Процентиль: 77%
0.01076
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-120
CWE-122

Связанные уязвимости

CVSS3: 5.3
nvd
около 1 года назад

A Heap buffer overflow in the server-site handshake implementation in Real Time Logic SharkSSL from 09/09/24 and earlier allows a remote attacker to trigger a Denial-of-Service via a malformed TLS Client Key Exchange message.

EPSS

Процентиль: 77%
0.01076
Низкий

5.3 Medium

CVSS3

Дефекты

CWE-120
CWE-122