Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-44718

Опубликовано: 02 сент. 2022
Источник: nvd
CVSS3: 5.9
EPSS Низкий

Описание

wolfSSL through 5.0.0 allows an attacker to cause a denial of service and infinite loop in the client component by sending crafted traffic from a Machine-in-the-Middle (MITM) position. The root cause is that the client module accepts TLS messages that normally are only sent to TLS servers.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:wolfssl:wolfssl:*:*:*:*:*:*:*:*
Версия до 5.0.0 (включая)

EPSS

Процентиль: 67%
0.0055
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-835

Связанные уязвимости

CVSS3: 5.9
ubuntu
больше 3 лет назад

wolfSSL through 5.0.0 allows an attacker to cause a denial of service and infinite loop in the client component by sending crafted traffic from a Machine-in-the-Middle (MITM) position. The root cause is that the client module accepts TLS messages that normally are only sent to TLS servers.

CVSS3: 5.9
debian
больше 3 лет назад

wolfSSL through 5.0.0 allows an attacker to cause a denial of service ...

CVSS3: 5.9
github
больше 3 лет назад

wolfSSL through 5.0.0 allows an attacker to cause a denial of service and infinite loop in the client component by sending crafted traffic from a Machine-in-the-Middle (MITM) position. The root cause is that the client module accepts TLS messages that normally are only sent to TLS servers.

EPSS

Процентиль: 67%
0.0055
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-835