Lucene search

K
osvGoogleOSV:CVE-2021-44847
HistoryDec 13, 2021 - 1:15 a.m.

CVE-2021-44847

2021-12-1301:15:07
Google
osv.dev
10
cve-2021-44847
buffer overflow
toxcore
remote attackers
network packet
arbitrary code
improper length calculation

AI Score

8.1

Confidence

Low

EPSS

0.015

Percentile

87.1%

A stack-based buffer overflow in handle_request function in DHT.c in toxcore 0.1.9 through 0.1.11 and 0.2.0 through 0.2.12 (caused by an improper length calculation during the handling of received network packets) allows remote attackers to crash the process or potentially execute arbitrary code via a network packet.

AI Score

8.1

Confidence

Low

EPSS

0.015

Percentile

87.1%