CVE-2019-16239
CRITICAL
9.8
CVSS Severity Score
Vulnerability Description
process_http_response in OpenConnect before 8.05 has a Buffer Overflow when a malicious server uses HTTP chunked encoding with crafted chunk sizes.
Affected Platforms (CPE)
π¦
Infradead
Openconnect
< 8.05π»
Fedoraproject
Fedora
= 29π»
Fedoraproject
Fedora
= 30π»
Fedoraproject
Fedora
= 31π»
Debian
Debian Linux
= 8.0π»
Debian
Debian Linux
= 9.0π»
Debian
Debian Linux
= 10.0π»
Canonical
Ubuntu Linux
= 18.04π»
Opensuse
Leap
= 15.0π»
Opensuse
