漏洞信息
尽管我们使用了先进的大模型技术,但其输出仍可能包含不准确或过时的信息。神龙努力确保数据的准确性,但请您根据实际情况进行核实和判断。
Vulnerability Title
Apache IoTDB C++ client: Out-of-bounds reads in C++ client TsBlock deserializer crash client process on malformed server data
Vulnerability Description
Out-of-bounds Read, Improper Input Validation vulnerability in Apache IoTDB C++ client. Out-of-bounds reads in IoTDB C++ client TsBlock deserializer crash client process on malformed server data. This issue affects Apache IoTDB C++ client: from 1.3.5 before 1.3.8, from 2.0.5 before 2.0.10. Users are recommended to upgrade to version 2.0.10, which fixes the issue.
CVSS Information
N/A
Vulnerability Type
跨界内存读
Vulnerability Title
Apache IoTDB C++ client 缓冲区错误漏洞
Vulnerability Description
Apache IoTDB C++ client是美国Apache基金会开源的一款物联网时间序列数据库。 Apache IoTDB C++ client 1.3.8版本之前的1.3.5版本和2.0.10版本之前的2.0.5版本受到影响存在安全漏洞,该漏洞源于越界读取和输入验证不当,可能导致客户端进程在解析畸形服务器数据时崩溃。
CVSS Information
N/A
Vulnerability Type
N/A