Lucene search

K
osvGoogleOSV:USN-4565-1
HistoryOct 05, 2020 - 1:24 p.m.

openconnect vulnerability

2020-10-0513:24:31
Google
osv.dev
8
openconnect
buffer overflow
http chunked encoding
denial of service
software

AI Score

7.5

Confidence

High

EPSS

0.008

Percentile

81.8%

It was discovered that OpenConnect has a buffer overflow when a malicious
server uses HTTP chunked encoding with crafted chunk sizes. An attacker
could use it to provoke a denial of service (crash).

AI Score

7.5

Confidence

High

EPSS

0.008

Percentile

81.8%