A Heap buffer overflow in the server-site handshake implementation in Real Time Logic SharkSSL from 09/09/24 and earlier allows a remote attacker to trigger a Denial-of-Service via a malformed TLS Client Key Exchange message.
                
            Metrics
Affected Vendors & Products
References
        History
                    Mon, 15 Sep 2025 20:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Weaknesses | CWE-120 | 
Mon, 15 Sep 2025 20:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Weaknesses | CWE-122 | 
Thu, 21 Nov 2024 21:00:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A Heap buffer overflow in the server-site handshake implementation in Real Time Logic SharkSSL 09.09.24 and earlier allows a remote attacker to trigger a Denial-of-Service via a malformed TLS Client Key Exchange message. | A Heap buffer overflow in the server-site handshake implementation in Real Time Logic SharkSSL from 09/09/24 and earlier allows a remote attacker to trigger a Denial-of-Service via a malformed TLS Client Key Exchange message. | 
Mon, 18 Nov 2024 19:15:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| First Time appeared | 
        
        Realtimelogic
         Realtimelogic sharkssl  | 
|
| Weaknesses | CWE-120 | |
| CPEs | cpe:2.3:a:realtimelogic:sharkssl:*:*:*:*:*:*:*:* | |
| Vendors & Products | 
        
        Realtimelogic
         Realtimelogic sharkssl  | 
|
| Metrics | 
        
        cvssV3_1
         
 
  | 
Tue, 12 Nov 2024 21:30:00 +0000
| Type | Values Removed | Values Added | 
|---|---|---|
| Description | A Heap buffer overflow in the server-site handshake implementation in Real Time Logic SharkSSL 09.09.24 and earlier allows a remote attacker to trigger a Denial-of-Service via a malformed TLS Client Key Exchange message. | |
| References | 
         | 
Status: PUBLISHED
Assigner: mitre
Published: 2024-11-12T00:00:00.000Z
Updated: 2025-09-15T19:22:30.834Z
Reserved: 2024-10-08T00:00:00.000Z
Link: CVE-2024-48075
Updated: 2024-11-18T18:18:20.115Z
Status : Awaiting Analysis
Published: 2024-11-12T22:15:15.290
Modified: 2025-09-15T20:15:35.447
Link: CVE-2024-48075
No data.
ReportizFlow