Описание
In APNSwift 1.0.0, calling APNSwiftSigner.sign(digest:) is likely to result in a heap buffer overflow. This has been fixed in 1.0.1.
Ссылки
- Patch
- Issue Tracking
- Issue Tracking
- Vendor Advisory
- Patch
- Issue Tracking
- Issue Tracking
- Vendor Advisory
Уязвимые конфигурации
Конфигурация 1
cpe:2.3:a:apnswift_project:apnswift:1.0.0:*:*:*:*:*:*:*
EPSS
Процентиль: 75%
0.00902
Низкий
6.3 Medium
CVSS3
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-122
EPSS
Процентиль: 75%
0.00902
Низкий
6.3 Medium
CVSS3
9.8 Critical
CVSS3
7.5 High
CVSS2
Дефекты
CWE-122