Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Douglas Held

Researcher fromHewlett-Packard Software's Fortify business unit
#34762of 53,632
7.5Total CVSS
Vulnerabilities · 1
PT-2015-6666
7.5
2015-06-19
Tiny · Tiny Srp Library · CVE-2015-4675
**Name of the Vulnerable Software and Affected Versions** Tiny SRP library (affected versions not specified) **Description** The issue is related to a buffer overflow in the Tiny SRP library, which can be triggered by remote attackers sending a crafted size value for the `username` field. This can cause a denial of service, resulting in a crash, or potentially allow the execution of arbitrary code. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.