CVE-2020-25887: Buffer Overflow
Published Aug 22, 2023
·Updated
Buffer overflow in mgresolvefromhostsfile in Mongoose 6.18, when reading from a crafted hosts file.
Affected Software
1 affected component
Cesanta Mongoose=6.18
Event History
Aug 22, 2023
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
What is CVE-2020-25887?
CVE-2020-25887 is a buffer overflow vulnerability found in Mongoose 6.18, allowing attackers to execute arbitrary code or crash the application.
2
How severe is CVE-2020-25887?
CVE-2020-25887 has a severity rating of 8.8 (high).
3
Which software versions are affected by CVE-2020-25887?
CVE-2020-25887 affects Cesanta Mongoose version 6.18.
4
How can I fix CVE-2020-25887?
To fix CVE-2020-25887, update Mongoose to a version that is not affected by the vulnerability.
5
Where can I find more information about CVE-2020-25887?
You can find more information about CVE-2020-25887 at the following URL: https://github.com/cesanta/mongoose/issues/1140