Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
A peer could send empty handshake fragments containing only padding which would be kept in memory until a full handshake was received, resulting in memory exhaustion. This issue affects versions v2019.01.28.00 and above of fizz, until v2019.08.05.00.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
fizz 资源管理错误漏洞
Vulnerability Description
fizz是一款使用C++语言编写的TLS实现。 fizz中存在安全漏洞。攻击者可利用该漏洞耗尽内存。
CVSS Information
N/A
Vulnerability Type
N/A