Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-xjxq-qhvw-jj4x

Опубликовано: 14 мая 2022
Источник: github
Github: Не прошло ревью

Описание

GNU ZRTPCPP before 3.2.0 allows remote attackers to obtain sensitive information (uninitialized heap memory) or cause a denial of service (out-of-bounds read) via a crafted packet, as demonstrated by a truncated Ping packet that is not properly handled by the getEpHash function.

GNU ZRTPCPP before 3.2.0 allows remote attackers to obtain sensitive information (uninitialized heap memory) or cause a denial of service (out-of-bounds read) via a crafted packet, as demonstrated by a truncated Ping packet that is not properly handled by the getEpHash function.

EPSS

Процентиль: 88%
0.04146
Низкий

Дефекты

CWE-119

Связанные уязвимости

ubuntu
больше 12 лет назад

GNU ZRTPCPP before 3.2.0 allows remote attackers to obtain sensitive information (uninitialized heap memory) or cause a denial of service (out-of-bounds read) via a crafted packet, as demonstrated by a truncated Ping packet that is not properly handled by the getEpHash function.

nvd
больше 12 лет назад

GNU ZRTPCPP before 3.2.0 allows remote attackers to obtain sensitive information (uninitialized heap memory) or cause a denial of service (out-of-bounds read) via a crafted packet, as demonstrated by a truncated Ping packet that is not properly handled by the getEpHash function.

debian
больше 12 лет назад

GNU ZRTPCPP before 3.2.0 allows remote attackers to obtain sensitive i ...

fstec
больше 12 лет назад

Уязвимости операционной системы Gentoo Linux, позволяющие удаленному злоумышленнику нарушить конфиденциальность, целостность и доступность защищаемой информации

EPSS

Процентиль: 88%
0.04146
Низкий

Дефекты

CWE-119