Security Advisory

CVE-2021-26530

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-02-08 20:13:36
Last updated 2024-08-03 20:26:25
Assigner mitre
State PUBLISHED

Description

The mg_tls_init function in Cesanta Mongoose HTTPS server 7.0 (compiled with OpenSSL support) is vulnerable to remote OOB write attack via connection request after exhausting memory pool.