漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
AWS C Event Stream Streaming Decoder Stack Buffer Overflow
Vulnerability Description
Out-of-bounds write in the streaming decoder component in aws-c-event-stream before 0.6.0 might allow a third party operating a server to cause memory corruption leading to arbitrary code execution on a client application that processes crafted event-stream messages. To remediate this issue, users should upgrade to version 0.6.0 or later.
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
Vulnerability Type
跨界内存写
Vulnerability Title
aws-c-event-stream 安全漏洞
Vulnerability Description
aws-c-event-stream是Amazon Web Services - Labs开源的一个事件流协议C语言实现库。 aws-c-event-stream 0.6.0之前版本存在安全漏洞,该漏洞源于流解码器组件存在越界写入,可能导致处理特制事件流消息时内存损坏并执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A