Ccn-lite

Ccn-lite

17 Schwachstellen gefunden.

Hinweis: Diese Liste kann unvollständig sein. Daten werden ohne Gewähr im Ursprungsformat bereitgestellt.
  • EPSS 0.33%
  • Veröffentlicht 07.02.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 03:09:34

Memory leak in CCN-lite before 2.00 allows context-dependent attackers to cause a denial of service (memory consumption) by leveraging failure to allocate memory for the comp or complen structure member.

  • EPSS 0.41%
  • Veröffentlicht 07.02.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 03:09:34

CCN-lite before 2.00 allows context-dependent attackers to have unspecified impact via vectors related to ssl_halen when running ccn-lite-sim, which trigger an out-of-bounds access.

  • EPSS 0.41%
  • Veröffentlicht 07.02.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 03:09:34

Multiple integer overflows in CCN-lite before 2.00 allow context-dependent attackers to have unspecified impact via vectors involving the (1) vallen variable in the iottlv_parse_sequence function or (2) typ, vallen and i variables in the localrpc_par...

  • EPSS 0.44%
  • Veröffentlicht 07.02.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 03:09:33

ccn-lite-valid.c in CCN-lite before 2.00 allows context-dependent attackers to cause a denial of service (NULL pointer dereference) via vectors involving the keyfile variable.

  • EPSS 0.33%
  • Veröffentlicht 07.02.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 03:09:33

Memory leak in the ccnl_app_RX function in ccnl-uapi.c in CCN-lite before 2.00 allows context-dependent attackers to cause a denial of service (memory consumption) via vectors involving an envelope_s structure pointer when the packet format is unknow...

  • EPSS 0.25%
  • Veröffentlicht 07.02.2018 17:29:00
  • Zuletzt bearbeitet 21.11.2024 03:09:25

ccn-lite-ccnb2xml in CCN-lite before 2.0.0 allows context-dependent attackers to have unspecified impact via a crafted file, which triggers infinite recursion and a stack overflow.

  • EPSS 0.38%
  • Veröffentlicht 31.01.2018 20:29:00
  • Zuletzt bearbeitet 21.11.2024 04:10:44

A type confusion issue was discovered in CCN-lite 2, leading to a memory access violation and a failure of the nonce feature (which, for example, helped with loop prevention). ccnl_fwd_handleInterest assumes that the union member s is of type ccnl_pk...