Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Buffer overflow in the ssl_prcert function in the SSLway filter (sslway.c) for DeleGate 8.9.2 and earlier allows remote attackers to execute arbitrary code via a certificate with a long (1) subject or (2) issuer name field.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
DeleGate SSLway Filter远程堆栈缓冲区溢出漏洞
Vulnerability Description
DeleGate是一款多功能应用级网关,运行在多个平台上。 DeleGate SSLway过滤器在处理用户提供的部分证书字段内容时缺少充分边界检查,远程攻击者可以利用这个漏洞对网关程序进行缓冲区溢出攻击,可能以进程权限在系统上执行任意指令。 当DeleGate SSLway过滤器使用时处理客户或服务端连接时存在漏洞,使用标题或发送者名字字段内容超过256字节的证书,可触发缓冲区溢出: static ssl_prcert(ssl,show,outssl,outfd,what) SSL *ssl; char
CVSS Information
N/A
Vulnerability Type
N/A