RSS   Vulnerabilities for 'Iperf'   RSS

2016-09-26
 
CVE-2016-4303

CWE-119
 

 
The parse_string function in cjson.c in the cJSON library mishandles UTF8/16 strings, which allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a non-hex character in a JSON string, which triggers a heap-based buffer overflow.

 


Copyright 2024, cxsecurity.com

 

Back to Top