The TCP Server module in toxcore before 0.2.8 doesn't free the TCP priority queue under certain conditions, which allows a remote attacker to exhaust the system's memory, causing a denial of service (DoS).
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2021-12-13T00:53:52

Updated: 2024-08-05T12:26:39.493Z

Reserved: 2021-12-13T00:00:00

Link: CVE-2018-25021

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2021-12-13T01:15:07.533

Modified: 2022-02-08T18:55:06.700

Link: CVE-2018-25021

cve-icon Redhat

No data.