← العودة للجدول
CVE-2014-2898
CVE-2014-2898 — wolfSSL CyaSSL before 2.9.4 allows remote attackers to have unspecified impact v
📅 2020-01-28
🔴 Critical 🔥 No NVD Exploit Vulnerability CVSS 9.8

📋 الوصف الكامل

wolfSSL CyaSSL before 2.9.4 allows remote attackers to have unspecified impact via multiple calls to the CyaSSL_read function which triggers an out-of-bounds read when an error occurs, related to not checking the return code and MAC verification failure.

💻 الأنظمة المتأثرة

wolfSSL CyaSSL before

⚠️ نوع التهديد

Exploit

🔗 CVE ID

CVE-2014-2898

📡 المصدر

NVD

✅ الحلول والتخفيف

Refer to CVE-2014-2898 NVD advisory

🔗 المصدر الأصلي ← 📘 NVD ← ⚡ CISA KEV ←