Описание
Mbed TLS before 3.6.4 has a NULL pointer dereference because mbedtls_asn1_store_named_data can trigger conflicting data with val.p of NULL but val.len greater than zero.
Ссылки
- Third Party AdvisoryMitigation
- Vendor Advisory
Уязвимые конфигурации
EPSS
4 Medium
CVSS3
7.5 High
CVSS3
Дефекты
Связанные уязвимости
Mbed TLS before 3.6.4 has a NULL pointer dereference because mbedtls_asn1_store_named_data can trigger conflicting data with val.p of NULL but val.len greater than zero.
Mbed TLS before 3.6.4 has a NULL pointer dereference because mbedtls_a ...
Mbed TLS before 3.6.4 has a NULL pointer dereference because mbedtls_asn1_store_named_data can trigger conflicting data with val.p of NULL but val.len greater than zero.
Уязвимость функции mbedtls_asn1_store_named_data программного обеспечения Mbed TLS, позволяющая нарушителю выполнить произвольный код
EPSS
4 Medium
CVSS3
7.5 High
CVSS3