PT-2019-16020 · Unknown · Libiec61850
Sleicasper
·
Publicado
2019-12-24
·
Atualizado
2020-08-24
·
CVE-2019-19958
CVSS v3.1
6.5
Média
| Vetor | AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
libIEC61850 version 1.4.0
Description
The issue is related to an integer signedness problem in the StringUtils createStringFromBuffer function, located in common/string utilities.c. This could potentially lead to an attempted excessive memory allocation, resulting in a denial of service.
Recommendations
For libIEC61850 version 1.4.0, consider applying a patch or fix that addresses the integer signedness issue in the StringUtils createStringFromBuffer function to prevent potential denial of service attacks.
Exploit
Correção
Allocation of Resources Without Limits
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Identificadores relacionados
Produtos afetados
Libiec61850