7.5

CVE-2008-3688

sockethandler.cpp in HTTP Antivirus Proxy (HAVP) 0.88 allows remote attackers to cause a denial of service (hang) by connecting to a non-responsive server, which triggers an infinite loop due to an uninitialized variable.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
HavpHttp Antivirus Proxy Version0.88
Zu dieser CVE wurde keine Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 3% 0.856
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 7.5 3.9 3.6
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
nvd@nist.gov 4.3 8.6 2.9
AV:N/AC:M/Au:N/C:N/I:N/A:P
CWE-908 Use of Uninitialized Resource

The product uses or accesses a resource that has not been initialized.

http://secunia.com/advisories/31494
Broken Link
http://secunia.com/advisories/31971
Broken Link
http://www.gentoo.org/security/en/glsa/glsa-200809-11.xml
Third Party Advisory
http://www.securityfocus.com/bid/30697
Third Party Advisory
Broken Link
VDB Entry
http://www.securitytracker.com/id?1020900
Third Party Advisory
Broken Link
VDB Entry
http://www.server-side.de/index.htm
Broken Link
Product
https://exchange.xforce.ibmcloud.com/vulnerabilities/44467
Third Party Advisory
VDB Entry
https://sourceforge.net/mailarchive/message.php?msg_name=487CDF51.5060201%40endian.com
Patch
Broken Link