Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The mg_tls_init function in Cesanta Mongoose HTTPS server 7.0 (compiled with OpenSSL support) is vulnerable to remote OOB write attack via connection request after exhausting memory pool.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Cesanta Mongoose 缓冲区错误漏洞
Vulnerability Description
Cesanta Mongoose是爱尔兰Cesanta公司的一套嵌入式服务器库,它包括TCP、HTTP客户端和服务器、WenSocket客户端和服务器等功能。 Cesanta Mongoose HTTPS server 7.0(支持OpenSSL编译)中存在缓冲区错误漏洞,该漏洞源于mg_tls_init函数容易在内存池耗尽后通过连接请求受到远程OOB写攻击。
CVSS Information
N/A
Vulnerability Type
N/A