Home
Trends
Vulnerabilities
News
Researchers
Why dbugs?

Wingtecher

#15653of 53,622
17.3Total CVSS
Vulnerabilities · 2
High
1
Critical
1
PT-2024-28877
9.8
2024-10-22
Freecoap · Freecoap · CVE-2024-40494
**Name of the Vulnerable Software and Affected Versions** FreeCoAP (affected versions not specified) **Description** The issue allows remote attackers to execute arbitrary code or cause a denial of service due to a stack buffer overflow via a crafted packet. This is caused by a buffer overflow in the coap msg.c file in FreeCoAP. **Recommendations** At the moment, there is no information about a newer version that contains a fix for this vulnerability.
PT-2024-31132
7.5
2024-10-22
Unknown · Gstreamer Rtsp Server · CVE-2024-44331
**Name of the Vulnerable Software and Affected Versions** GStreamer RTSP server version 1.25.0 **Description** The issue is related to incorrect access control in the GStreamer RTSP server, which allows remote attackers to cause a denial of service via a series of specially crafted hexstream requests. This is due to a problem in the gst-rtsp-server/rtsp-media.c file. **Recommendations** For GStreamer RTSP server version 1.25.0, consider restricting access to the RTSP server until a patch is available. As a temporary workaround, avoid using the `gst-rtsp-server` module to minimize the risk of exploitation. At the moment, there is no information about a newer version that contains a fix for this vulnerability.