CVE-2020-12823 - log back

CVE-2020-12823 edited at 20 May 2020 16:02:08
Severity
- High
+ Low
Remote
- Remote
+ Local
Description
- OpenConnect 8.09 has a buffer overflow, causing a denial of service (application crash) or possibly unspecified other impact, via crafted certificate data to get_cert_name in gnutls.c.
+ OpenConnect 8.09 has a buffer overflow in get_cert_name in gnutls.c, causing a denial of service (application crash) or possibly unspecified other impact, via crafted data in a local certificate.
CVE-2020-12823 edited at 13 May 2020 21:19:31
Severity
- Unknown
+ High
Remote
- Unknown
+ Remote
Type
- Unknown
+ Arbitrary code execution
References
+ https://gitlab.com/openconnect/openconnect/-/merge_requests/108
CVE-2020-12823 edited at 13 May 2020 13:13:56
Description
+ OpenConnect 8.09 has a buffer overflow, causing a denial of service (application crash) or possibly unspecified other impact, via crafted certificate data to get_cert_name in gnutls.c.
References
Notes
CVE-2020-12823 created at 13 May 2020 07:52:28