CVE-2024-22088

Lotos WebServer through 0.1.1 (commit 3eb36cc) has a use-after-free in buffer_avail() at buffer.h via a long URI, because realloc is mishandled.
References
Link Resource
https://github.com/chendotjs/lotos/issues/7 Exploit Issue Tracking Mitigation Vendor Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:chendotjs:lotos_webserver:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2024-01-05 04:15

Updated : 2024-01-10 20:05


NVD link : CVE-2024-22088

Mitre link : CVE-2024-22088

CVE.ORG link : CVE-2024-22088


JSON object : View

Products Affected

chendotjs

  • lotos_webserver
CWE
CWE-416

Use After Free