PolarSSL 'ssl_read_record()' Function Remote Buffer Overflow Vulnerability

PolarSSL is prone to a remote buffer-overflow vulnerability because the application fails to perform adequate boundary-checks on user-supplied data.

An attacker can exploit this issue to execute arbitrary code within the context of the affected application. Failed exploit attempts may result in a denial-of-service condition.

PolarSSL versions prior to 1.1.8 are vulnerable.


 

Privacy Statement
Copyright 2010, SecurityFocus