ZeroHour

CVE-2022-32096

CVSS 3.1
7.5 high
EPSS
1%p68
Published
()
Modified
Description

Rhonabwy before v1.1.5 was discovered to contain a buffer overflow via the component r_jwe_aesgcm_key_unwrap. This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted JWE token.

Vendors
rhonabwy project
Products
rhonabwy
Weakness
CWE-120
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.