A denial-of-service vulnerability exists in the WS-Addressing plugin functionality of Genivia gSOAP 2.8.107. A specially crafted SOAP request can lead to denial of service. An attacker can send an HTTP request to trigger this vulnerability.
The product dereferences a pointer that it expects to be valid but is NULL.
Link | Tags |
---|---|
https://talosintelligence.com/vulnerability_reports/TALOS-2020-1186 | exploit third party advisory technical description |
https://lists.debian.org/debian-lts-announce/2024/02/msg00015.html |