PT-2018-5406 · Ccn-Lite · Ccn-Lite

Eric Sesterhenn

·

Published

2018-02-07

·

Updated

2019-10-03

·

CVE-2017-12467

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions: CCN-lite versions prior to 2.00
Description: A memory leak issue exists, allowing context-dependent attackers to cause a denial of service by consuming memory. This is due to the failure to allocate memory for the comp or complen structure member.
Recommendations: For versions prior to 2.00, update to version 2.00 or later to resolve the issue.

Fix

Missing Release of Resource after Effective Lifetime

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2017-12467

Affected Products

Ccn-Lite