问题摘要:OpenSSL 证书管理协议(CMP)会缓存 CMP 消息中发送的附加证书(extraCerts),但从未将其清除(例如,即使这些证书无效)。如果服务器频繁重用同一个 上下文,这个 extraCerts 缓存可能会无限制增长,恶意客户端可能通过向 CMP 服务器发送大量请求来驱动这种增长。 影响摘要:对于在其服务器进程生命周期内重用单个 的 CMP 服务器用户,如果恶意客户端反复发送包含不同附加证书的请求,可能会导致内存无限增长,进而引发内存不足(OOM)状况。 CWE:CWE-770:未限制或未限速地分
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-75803 | AEAD Forgeries with Empty Ciphertext When Using EVP_Cipher() | |
| CVE-2026-18798 | QUIC Server May Trigger Double Free When Processing INITIAL Packet | |
| CVE-2026-54874 | Excessive Memory Use Buffering DTLS Records for a Future Epoch | |
| CVE-2026-63072 | Heap Buffer Overflow in CMS Key Unwrapping | |
| CVE-2026-63073 | Untrusted Sender DN Used as Format String in CMP Response Validation | |
| CVE-2026-63075 | QUIC ACK-only Packet Retention Can Cause Memory Exhaustion | |
| CVE-2026-63076 | Invalid Pointer Dereference in CMP Server via Crafted protectionAlg | |
| CVE-2026-14457 | RPK Server Signature Algorithm Selection Can Dereference a Missing Certificate |
No comments yet