Описание
wolfSSL before 3.10.2 has an out-of-bounds memory access with loading crafted DH parameters, aka a buffer overflow triggered by a malformed temporary DH file.
Ссылки
- Issue TrackingPatchThird Party Advisory
- Issue TrackingPatchThird Party Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 3.10.0a (включая)
cpe:2.3:a:wolfssl:wolfssl:*:*:*:*:*:*:*:*
EPSS
Процентиль: 50%
0.00266
Низкий
7.8 High
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-119
Связанные уязвимости
CVSS3: 7.8
ubuntu
больше 8 лет назад
wolfSSL before 3.10.2 has an out-of-bounds memory access with loading crafted DH parameters, aka a buffer overflow triggered by a malformed temporary DH file.
CVSS3: 7.8
debian
больше 8 лет назад
wolfSSL before 3.10.2 has an out-of-bounds memory access with loading ...
CVSS3: 7.8
github
больше 3 лет назад
wolfSSL before 3.10.2 has an out-of-bounds memory access with loading crafted DH parameters, aka a buffer overflow triggered by a malformed temporary DH file.
EPSS
Процентиль: 50%
0.00266
Низкий
7.8 High
CVSS3
6.8 Medium
CVSS2
Дефекты
CWE-119