CVE-2006-3121
MEDIUM 5.0EPSS 13.3%
The peel_netstring function in cl_netstring.c in the heartbeat subsystem in High-Availability Linux before 1.2.5, and 2.0 before 2.0.7, allows remote attackers to cause a denial of service (crash) via the length parameter in a heartbeat message.
- CVSS v2.0
- 5.0 MEDIUM
AV:N/AC:L/Au:N/C:N/I:N/A:P - EPSS
- 13.35% chance of exploitation in the next 30 days, 96th percentile
- Published
- 2006-08-17
- Updated
- 2024-08-07