PT-2005-1727 · Hashcash · Hashcash

Tavis Ormandy

·

Publicado

2005-03-06

·

Atualizado

2008-09-05

·

CVE-2005-0687

CVSS v2.0

7.5

Alta

VetorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Hashcash version 1.16
Description The issue allows remote attackers to cause a denial of service due to memory consumption and possibly execute arbitrary code. This is achieved through format string specifiers in a reply address that is not properly handled when printing the header.
Recommendations For Hashcash version 1.16, update to a version that properly handles format string specifiers in reply addresses to prevent denial of service and potential code execution.

Correção

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2005-0687

Produtos afetados

Hashcash