Security Advisory

CVE-2020-6061

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2020-02-19 18:27:20
Last updated 2024-08-04 08:47:41
Assigner talos
State PUBLISHED

Description

An exploitable heap out-of-bounds read vulnerability exists in the way CoTURN 4.5.1.1 web server parses POST requests. A specially crafted HTTP POST request can lead to information leaks and other misbehavior. An attacker needs to send an HTTPS request to trigger this vulnerability.