A stack-based buffer overflow in handle_request function in DHT.c in toxcore 0.1.9 through 0.1.11 and 0.2.0 through 0.2.12 (caused by an improper length calculation during the handling of received network packets) allows remote attackers to crash the process or potentially execute arbitrary code via a network packet.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2021-12-13T00:53:26
Updated: 2024-08-04T04:32:12.863Z
Reserved: 2021-12-13T00:00:00
Link: CVE-2021-44847
Vulnrichment
No data.
NVD
Status : Modified
Published: 2021-12-13T01:15:07.730
Modified: 2024-11-21T06:31:36.140
Link: CVE-2021-44847
Redhat
No data.