CVE-2019-14378
ip_reass in ip_input.c in libslirp 4.0.0 has a heap-based buffer overflow via a large packet because it mishandles a case involving the first fragment.
- Libslirp Project Libslirp
- = 4.0.0
- CVSS 3.0
- 8.8 HIGH
- EPSS
- 16.7% (97th percentile)
- Weakness
- CWE-755, CWE-787
- NVD status
- Modified
- Published
- 2019-07-29
CVE-2019-14378 at NVD
4 known exploits for CVE-2019-14378
Proof-of-concept code and exploit modules indexed by Sploitus