메뉴 건너뛰기

GREATUSER

cve

CVE-2017-2922

관리자 2017.11.09 04:00 조회 수 : 137

An exploitable memory corruption vulnerability exists in the Websocket protocol implementation of Cesanta Mongoose 6.8. A specially crafted websocket packet can cause a buffer to be allocated while leaving stale pointers which leads to a use-after-free vulnerability which can be exploited to achieve remote code execution. An attacker needs to send a specially crafted websocket packet over the network to trigger this vulnerability.


원문출처 : https://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2017-2922
번호 제목 글쓴이 날짜 조회 수
332 CVE-2017-2890 관리자 2017.11.09 174
331 CVE-2015-5701 관리자 2017.08.27 174
330 CVE-2017-0805 (android) 관리자 2017.08.27 174
329 CVE-2017-0086 관리자 2017.03.18 174
328 CVE-2017-0096 관리자 2017.03.18 174
327 CVE-2017-0040 관리자 2017.03.18 174
326 CVE-2017-16610 관리자 2018.01.25 173
325 CVE-2016-10708 관리자 2018.01.25 173
324 CVE-2017-9640 관리자 2017.08.27 173
323 CVE-2017-12135 관리자 2017.08.27 173
322 CVE-2017-6548 관리자 2017.03.10 173
321 CVE-2016-3201 관리자 2016.06.17 173
320 CVE-2017-0136 관리자 2017.03.18 172
319 CVE-2017-0068 관리자 2017.03.18 172
318 CVE-2017-0019 관리자 2017.03.18 172
위로