Количество 6
Количество 6
CVE-2025-14181
The SOAP HTTP client guards its response buffer growth with a check that relies on signed integer overflow, which is undefined behaviour and is not guaranteed to trigger. When the check is optimised away, a malicious SOAP server can make the client allocate a buffer far smaller than the data it then writes into it, producing a heap buffer overflow.
CVE-2025-14181
The SOAP HTTP client guards its response buffer growth with a check that relies on signed integer overflow, which is undefined behaviour and is not guaranteed to trigger. When the check is optimised away, a malicious SOAP server can make the client allocate a buffer far smaller than the data it then writes into it, producing a heap buffer overflow.
CVE-2025-14181
The SOAP HTTP client guards its response buffer growth with a check that relies on signed integer overflow, which is undefined behaviour and is not guaranteed to trigger. When the check is optimised away, a malicious SOAP server can make the client allocate a buffer far smaller than the data it then writes into it, producing a heap buffer overflow.
CVE-2025-14181
Integer overflow to buffer overflow in soap HTTP parsing
CVE-2025-14181
The SOAP HTTP client guards its response buffer growth with a check th ...
GHSA-cj93-vc83-wgqv
Integer overflow to buffer overflow in soap HTTP parsing
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2025-14181 The SOAP HTTP client guards its response buffer growth with a check that relies on signed integer overflow, which is undefined behaviour and is not guaranteed to trigger. When the check is optimised away, a malicious SOAP server can make the client allocate a buffer far smaller than the data it then writes into it, producing a heap buffer overflow. | CVSS3: 6.5 | 0% Низкий | 8 дней назад | |
CVE-2025-14181 The SOAP HTTP client guards its response buffer growth with a check that relies on signed integer overflow, which is undefined behaviour and is not guaranteed to trigger. When the check is optimised away, a malicious SOAP server can make the client allocate a buffer far smaller than the data it then writes into it, producing a heap buffer overflow. | CVSS3: 6.5 | 0% Низкий | 8 дней назад | |
CVE-2025-14181 The SOAP HTTP client guards its response buffer growth with a check that relies on signed integer overflow, which is undefined behaviour and is not guaranteed to trigger. When the check is optimised away, a malicious SOAP server can make the client allocate a buffer far smaller than the data it then writes into it, producing a heap buffer overflow. | CVSS3: 6.5 | 0% Низкий | 8 дней назад | |
CVE-2025-14181 Integer overflow to buffer overflow in soap HTTP parsing | CVSS3: 6.5 | 0% Низкий | 5 дней назад | |
CVE-2025-14181 The SOAP HTTP client guards its response buffer growth with a check th ... | CVSS3: 6.5 | 0% Низкий | 8 дней назад | |
GHSA-cj93-vc83-wgqv Integer overflow to buffer overflow in soap HTTP parsing | CVSS3: 6.5 | 0% Низкий | 9 дней назад |
Уязвимостей на страницу