PT-2023-31593 · Ipaddress · Ipaddress
Published
2023-12-29
·
Updated
2024-11-07
·
CVE-2023-50570
CVSS v3.1
5.5
Medium
| Vector | AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H |
Name of the Vulnerable Software and Affected Versions
IPAddress version 5.1.0
Description
An issue in the component IPAddressBitsDivision leads to an infinite loop. This issue is disputed as it only occurs when the developer supplies invalid arguments, and the product is not intended to always halt for contrived inputs.
Recommendations
For IPAddress version 5.1.0, consider validating input arguments to the IPAddressBitsDivision component to prevent infinite loops. As a temporary workaround, consider implementing input validation checks to ensure that only valid arguments are supplied to the component.
Exploit
Fix
Infinite Loop
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Ipaddress