CVE-2019-6439: Buffer Overflow
Published Jan 16, 2019
·Updated
examples/benchmark/tlsbench.c in a benchmark tool in wolfSSL through 3.15.7 has a heap-based buffer overflow.
Affected Software
1 affected component
wolfSSL wolfssl<=3.15.7
Remediation
Patch Available
Event History
Jan 16, 2019
CVE Published
via MITRE·03:00 AM
Data Sourced
via MITRE·03:00 AM
Description
Data Sourced
via NVD·03:29 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2019-6439.
2
What is the severity of CVE-2019-6439?
The severity of CVE-2019-6439 is critical.
3
Which software versions are affected by CVE-2019-6439?
Versions up to and including 3.15.7 of Wolfssl are affected by CVE-2019-6439.
4
What is the CWE ID for this vulnerability?
The CWE ID for this vulnerability is CWE-119 and CWE-787.
5
How can I fix CVE-2019-6439?
To fix CVE-2019-6439, update to a version of Wolfssl that is later than 3.15.7.