Wangle's AcceptRoutingHandler incorrectly casts a socket when accepting a TLS 1.3 connection, leading to a potential denial of service attack against systems accepting such connections. This affects versions of Wangle prior to v2019.01.14.00
References
Link | Resource |
---|---|
https://github.com/facebook/wangle/commit/3b17ba10a82c71e7808760e027ac6af687e06074 | Patch Third Party Advisory |
Configurations
Information
Published : 2019-01-15 14:29
Updated : 2019-10-09 16:49
NVD link : CVE-2019-3554
Mitre link : CVE-2019-3554
JSON object : View
CWE
CWE-19
Data Processing Errors
Products Affected
- wangle