CVE-2024-42383

Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows to write a NULL byte value beyond the memory space dedicated for the hostname field.
Configurations

Configuration 1 (hide)

cpe:2.3:a:cesanta:mongoose:*:*:*:*:*:*:*:*

History

19 Nov 2024, 17:55

Type Values Removed Values Added
CWE CWE-823 NVD-CWE-Other
First Time Cesanta mongoose
Cesanta
CPE cpe:2.3:a:cesanta:mongoose:*:*:*:*:*:*:*:*
References () https://www.nozominetworks.com/labs/vulnerability-advisories-cve-2024-42383 - () https://www.nozominetworks.com/labs/vulnerability-advisories-cve-2024-42383 - Third Party Advisory
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 9.8

18 Nov 2024, 10:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-11-18 10:15

Updated : 2024-11-19 17:55


NVD link : CVE-2024-42383

Mitre link : CVE-2024-42383


JSON object : View

Products Affected

cesanta

  • mongoose