Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
libmysofa before 2019-11-24 does not properly restrict recursive function calls, as demonstrated by reports of stack consumption in readOHDRHeaderMessageDatatype in dataobject.c and directblockRead in fractalhead.c. NOTE: a download of v0.9 after 2019-12-06 should fully remediate this issue.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
libmysofa 缓冲区错误漏洞
Vulnerability Description
libmysofa是一款用于读取AES SOFA文件的库。 libmysofa 2019-11-24之前版本中存在安全漏洞,该漏洞源于程序没有限制递归函数的调用。攻击者可利用该漏洞造成拒绝服务。
CVSS Information
N/A
Vulnerability Type
N/A