Skip to content
New issue

Have a question about this project? Sign up for a free GitHub account to open an issue and contact its maintainers and the community.

By clicking “Sign up for GitHub”, you agree to our terms of service and privacy statement. We’ll occasionally send you account related emails.

Already on GitHub? Sign in to your account

Vulnerability Disclosure #164

Open
whitesquirrell opened this issue Jan 4, 2022 · 5 comments
Open

Vulnerability Disclosure #164

whitesquirrell opened this issue Jan 4, 2022 · 5 comments

Comments

@whitesquirrell
Copy link

Dear accel-ppp Development Team,

I have filed a vulnerability disclosure by email to [email protected]. Please let me know when it is patched and we can use this issue for tracking purposes.

Thanks!

@DmitriyEshenko
Copy link
Contributor

Hi @whitesquirrell , make sense, but unfortunately does not possible to produce buffer overflow via the proposed exploit.

@whitesquirrell
Copy link
Author

Hi @DmitriyEshenko, noted. Since the corruption occurs during the exit process, will you still patch the code?

@DmitriyEshenko
Copy link
Contributor

Sure, we definitely will patch code and open CVE but need time, I guess around 2 weeks

@whitesquirrell
Copy link
Author

Hi @DmitriyEshenko, may I know if the code is patched?

@ajakk
Copy link

ajakk commented Aug 17, 2022

Looks like this got CVE-2022-0982, but was it fixed?

Sign up for free to join this conversation on GitHub. Already have an account? Sign in to comment
Labels
None yet
Projects
None yet
Development

No branches or pull requests

3 participants