USN-8807-1: Open-iSNS vulnerability
AI summary · grok-4.7
Ubuntu warned of an Open-iSNS double-free that unauthenticated attackers could use for denial of service.
Ubuntu Security Notice USN-8807-1 says Open-iSNS contains a double-free vulnerability when decoding malformed iSNS attributes. An unauthenticated attacker could possibly use it to cause a denial of service. The notice does not name a CVE or report that the flaw is being exploited.
- Double-free occurs while decoding malformed iSNS attributes.
- Described impact is denial of service by an unauthenticated attacker.
- The notice states no CVE and no active exploitation.
Full article
It was discovered that Open-iSNS contained a double-free vulnerability when decoding malformed iSNS attributes. An unauthenticated attacker could possibly use this to cause a denial of service.
This source does not provide full text. Read it at ubuntu.com.