CVE-2021-26529
EUVD-2021-1333308.02.2021, 21:15
The mg_tls_init function in Cesanta Mongoose HTTPS server 7.0 and 6.7-6.18 (compiled with mbedTLS support) is vulnerable to remote OOB write attack via connection request after exhausting memory pool.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| cesanta | mongoose | 6.7 ≤ 𝑥 ≤ 6.18 |
| cesanta | mongoose | 7.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration