Use of Out-of-range Pointer Offset vulnerability in Cesanta Mongoose Web Server v7.14 allows an attacker to send an unexpected TLS packet and force the application to read unintended heap memory space.
References
| Link | Resource |
|---|---|
| https://www.nozominetworks.com/labs/vulnerability-advisories-cve-2024-42388 | Third Party Advisory |
Configurations
History
19 Nov 2024, 17:51
| Type | Values Removed | Values Added |
|---|---|---|
| CWE | NVD-CWE-Other | |
| First Time |
Cesanta mongoose
Cesanta |
|
| References | () https://www.nozominetworks.com/labs/vulnerability-advisories-cve-2024-42388 - Third Party Advisory | |
| CPE | cpe:2.3:a:cesanta:mongoose:*:*:*:*:*:*:*:* |
18 Nov 2024, 17:11
| Type | Values Removed | Values Added |
|---|---|---|
| Summary |
|
18 Nov 2024, 10:15
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2024-11-18 10:15
Updated : 2024-11-19 17:51
NVD link : CVE-2024-42388
Mitre link : CVE-2024-42388
CVE.ORG link : CVE-2024-42388
JSON object : View
Products Affected
cesanta
- mongoose
CWE
