Stack-based buffer overflow in the evutil_parse_sockaddr_port function in evutil.c in libevent prior to 2.1.6-beta allows malicious users to cause a denial of service (segmentation fault) via vectors involving a long string in brackets in the ip_as_string argument.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
debian debian linux 8.0 |
||
libevent project libevent |
||
mozilla firefox |
||
mozilla firefox esr |
||
mozilla firefox esr 52.0 |
||
mozilla thunderbird |