process_certificate in tls1.c in Cameron Hamilton-Rich axTLS through 2.1.5 has a Buffer Overflow via a crafted TLS certificate handshake message with zero certificates.
References
Configurations
Information
Published : 2019-12-03 12:15
Updated : 2019-12-20 14:15
NVD link : CVE-2019-9689
Mitre link : CVE-2019-9689
JSON object : View
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
Products Affected
axtls_project
- axtls