cve/2014/CVE-2014-3466.md
2024-05-26 14:27:05 +02:00

750 B

CVE-2014-3466

Description

Buffer overflow in the read_server_hello function in lib/gnutls_handshake.c in GnuTLS before 3.1.25, 3.2.x before 3.2.15, and 3.3.x before 3.3.4 allows remote servers to cause a denial of service (memory corruption) or possibly execute arbitrary code via a long session id in a ServerHello message.

POC

Reference

No PoCs from references.

Github