Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
AWS C Event Stream Streaming Decoder Stack Buffer Overflow
Vulnerability Description
Out-of-bounds write in the streaming decoder component in aws-c-event-stream before 0.6.0 might allow a third party operating a server to cause memory corruption leading to arbitrary code execution on a client application that processes crafted event-stream messages. To remediate this issue, users should upgrade to version 0.6.0 or later.
CVSS Information
CVSS:3.1/AV:N/AC:H/PR:N/UI:R/S:U/C:H/I:H/A:H
Vulnerability Type
跨界内存写
Vulnerability Title
aws-c-event-stream 安全漏洞
Vulnerability Description
aws-c-event-stream是Amazon Web Services - Labs开源的一个事件流协议C语言实现库。 aws-c-event-stream 0.6.0之前版本存在安全漏洞,该漏洞源于流解码器组件存在越界写入,可能导致处理特制事件流消息时内存损坏并执行任意代码。
CVSS Information
N/A
Vulnerability Type
N/A