Vulnerabilities > Ntop > Ndpi > Medium
DATE | CVE | VULNERABILITY TITLE | RISK |
---|---|---|---|
2021-07-01 | CVE-2021-36082 | Out-of-bounds Write vulnerability in Ntop Ndpi 3.4 ntop nDPI 3.4 has a stack-based buffer overflow in processClientServerHello. | 6.8 |
2020-07-01 | CVE-2020-15476 | Out-of-bounds Read vulnerability in multiple products In nDPI through 3.2, the Oracle protocol dissector has a heap-based buffer over-read in ndpi_search_oracle in lib/protocols/oracle.c. | 5.0 |
2020-07-01 | CVE-2020-15473 | Out-of-bounds Read vulnerability in Ntop Ndpi In nDPI through 3.2, the OpenVPN dissector is vulnerable to a heap-based buffer over-read in ndpi_search_openvpn in lib/protocols/openvpn.c. | 6.4 |
2020-07-01 | CVE-2020-15472 | Out-of-bounds Read vulnerability in multiple products In nDPI through 3.2, the H.323 dissector is vulnerable to a heap-based buffer over-read in ndpi_search_h323 in lib/protocols/h323.c, as demonstrated by a payload packet length that is too short. | 6.4 |
2020-07-01 | CVE-2020-15471 | Out-of-bounds Read vulnerability in Ntop Ndpi In nDPI through 3.2, the packet parsing code is vulnerable to a heap-based buffer over-read in ndpi_parse_packet_line_info in lib/ndpi_main.c. | 6.4 |
2020-04-23 | CVE-2020-11940 | Out-of-bounds Read vulnerability in Ntop Ndpi In nDPI through 3.2 Stable, an out-of-bounds read in concat_hash_string in ssh.c can be exploited by a network-positioned attacker that can send malformed SSH protocol messages on a network segment monitored by nDPI's library. | 5.0 |