ZeroHour

CVE-2017-7529

CVSS 3.1
7.5 high
EPSS
63%p99
Published
()
Modified
Description

Nginx versions since 0.5.6 up to and including 1.13.2 are vulnerable to integer overflow vulnerability in nginx range filter module resulting into leak of potentially sensitive information triggered by specially crafted request.

Vendors
f5puppetapple
Products
nginx, puppet enterprise, xcode
Weakness
CWE-190
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

In the news

No ingested article mentions this CVE yet.