Heap buffer overflow in the server site handshake...
High severity
Unreviewed
Published
Jan 24, 2025
to the GitHub Advisory Database
•
Updated Feb 27, 2025
Description
Published by the National Vulnerability Database
Jan 23, 2025
Published to the GitHub Advisory Database
Jan 24, 2025
Last updated
Feb 27, 2025
Heap buffer overflow in the server site handshake implementation in Real Time Logic LLC's SharkSSL version (from 05/05/24) commit 64808a5e12c83b38f85c943dee0112e428dc2a43 allows a remote attacker to trigger a Denial-of-Service via a malformed Client-Hello message.
References