First published: Wed Dec 30 2020(Updated: )
In MatrixSSL before 4.2.2 Open, the DTLS server can encounter an invalid pointer free (leading to memory corruption and a daemon crash) via a crafted incoming network message, a different vulnerability than CVE-2019-14431.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Matrixssl Matrixssl | <4.2.2 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2019-16747 is a vulnerability in MatrixSSL before 4.2.2 Open, where the DTLS server can encounter an invalid pointer free, leading to memory corruption and a daemon crash.
CVE-2019-16747 has a severity rating of 7.5 (high).
MatrixSSL versions up to and excluding 4.2.2 are affected by CVE-2019-16747.
To fix CVE-2019-16747, users should update to MatrixSSL version 4.2.2 or higher.
Yes, you can find references for CVE-2019-16747 at the following links: [1] [2] [3]