PT-2024-40856 · Pistache · Pistache

Published

2024-08-16

·

Updated

2024-08-16

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions Pistache (affected versions not specified)
Description The issue is related to a crash caused by an unknown read in the Pistache::Http::Header::Expect::parseRaw function. This function is part of the Pistache HTTP library, which is used for parsing HTTP headers. The crash occurs when the parseRaw function is called, leading to a sequence of events that ultimately results in a crash. The Pistache::Http::Private::HeadersStep::apply and Pistache::Http::Private::ParserBase::parse functions are also involved in the crash sequence.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Related Identifiers

OSV-2024-832

Affected Products

Pistache