漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Cesanta Mongoose Out-of-Bounds Read in MG_TLS_BUILTIN ClientHello Session ID Parsing
Vulnerability Description
Cesanta Mongoose before 7.22 contains an out-of-bounds read in the built-in TLS server function mg_tls_server_recv_hello(), which uses an attacker-controlled session_id_len byte from a TLS ClientHello as a buffer index without validating it against the length of received data. A remote, unauthenticated attacker can send a single crafted ClientHello with an oversized session id length to read past the receive buffer, crashing any HTTPS, MQTTS, or WSS service built on MG_TLS_BUILTIN.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Vulnerability Type
跨界内存读
Vulnerability Title
Cesanta Mongoose 缓冲区错误漏洞
Vulnerability Description
Cesanta mongoose是爱尔兰Cesanta公司开源的一个嵌入式Web服务器库。 Cesanta Mongoose 7.22之前版本存在缓冲区错误漏洞,该漏洞源于内置TLS服务器函数mg_tls_server_recv_hello()中存在越界读取,该函数使用攻击者控制的TLS ClientHello中session_id_len字节作为缓冲区索引而未验证接收数据长度,可能导致远程未认证攻击者发送特制ClientHello与超大会话ID长度读取接收缓冲区之后,导致基于MG_TLS_BUILTIN
CVSS Information
N/A
Vulnerability Type
N/A