CVE-2019-16239
CRITICAL
9.8
CVSS Severity Score
Vulnerability Description
process_http_response in OpenConnect before 8.05 has a Buffer Overflow when a malicious server uses HTTP chunked encoding with crafted chunk sizes.
Affected Platforms (CPE)
📦
Infradead
Openconnect
< 8.05💻
Fedoraproject
Fedora
= 29💻
Fedoraproject
Fedora
= 30💻
Fedoraproject
Fedora
= 31💻
Debian
Debian Linux
= 8.0💻
Debian
Debian Linux
= 9.0💻
Debian
Debian Linux
= 10.0💻
Canonical
Ubuntu Linux
= 18.04💻
Opensuse
Leap
= 15.0💻
Opensuse
