MobaXterm before 21.0 allows remote servers to cause a denial of service (Windows GUI hang) via tab title change requests that are sent repeatedly at high speed, which results in many SetWindowTextA or SetWindowTextW calls.
References
Link | Resource |
---|---|
https://mobaxterm.mobatek.net/download-home-edition.html | Product Release Notes Vendor Advisory |
https://mobaxterm.mobatek.net/preview.html | Release Notes Vendor Advisory |
History
No history.
MITRE Information
Status: PUBLISHED
Assigner: mitre
Published: 2021-06-03T10:58:16
Updated: 2021-06-03T10:58:16
Reserved: 2021-03-19T00:00:00
Link: CVE-2021-28847
JSON object: View
NVD Information
Status : Analyzed
Published: 2021-06-03T11:15:08.627
Modified: 2022-07-12T17:42:04.277
Link: CVE-2021-28847
JSON object: View
Redhat Information
No data.
CWE