Lucene search

K
cvelistRedhatCVELIST:CVE-2020-27813
HistoryDec 02, 2020 - 12:00 a.m.

CVE-2020-27813

2020-12-0200:00:00
CWE-190
redhat
www.cve.org
1

7.3 High

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

75.1%

An integer overflow vulnerability exists with the length of websocket frames received via a websocket connection. An attacker would use this flaw to cause a denial of service attack on an HTTP Server allowing websocket connections.

CNA Affected

[
  {
    "vendor": "n/a",
    "product": "golang-github-gorilla-websocket",
    "versions": [
      {
        "version": "github.com/gorilla/websocket v1.4.1",
        "status": "affected"
      }
    ]
  }
]

7.3 High

AI Score

Confidence

High

0.004 Low

EPSS

Percentile

75.1%