CVE-2017-12865
CRITICALconnman < 1.34 - Stack-based Buffer Overflow in dnsproxy.c
Title source: llmExploitation Summary
EIP tracks 1 public exploit for CVE-2017-12865. PoCs published by ManaswiJaiswal.
AI-analyzed exploit summary This repository contains a proof-of-concept for CVE-2017-12865, a vulnerability in ConnMan 1.34. The exploit appears to target a D-Bus-related issue, likely involving improper input validation or privilege escalation via D-Bus method calls.
Description
Stack-based buffer overflow in "dnsproxy.c" in connman 1.34 and earlier allows remote attackers to cause a denial of service (crash) or execute arbitrary code via a crafted response query string passed to the "name" variable.
Exploits (1)
This repository contains a proof-of-concept for CVE-2017-12865, a vulnerability in ConnMan 1.34. The exploit appears to target a D-Bus-related issue, likely involving improper input validation or privilege escalation via D-Bus method calls.
References (7)
Scores
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H