Lucene search

K
osvGoogleOSV:CVE-2021-26530
HistoryFeb 08, 2021 - 9:15 p.m.

CVE-2021-26530

2021-02-0821:15:13
Google
osv.dev
5
vulnerability
cesanta mongoose
https server
remote attack
memory exhaustion

AI Score

6.9

Confidence

High

EPSS

0.015

Percentile

86.7%

The mg_tls_init function in Cesanta Mongoose HTTPS server 7.0 (compiled with OpenSSL support) is vulnerable to remote OOB write attack via connection request after exhausting memory pool.

AI Score

6.9

Confidence

High

EPSS

0.015

Percentile

86.7%

Related for OSV:CVE-2021-26530