Arm Whois 3.11 contains a buffer overflow vulnerability that allows local attackers to crash the application by supplying an oversized input string. Attackers can paste a malicious buffer of 700 bytes into the IP address or domain input field to trigger a denial of service condition.
References
Configurations
No configuration.
History
30 May 2026, 16:17
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-30 16:17
Updated : 2026-06-01 16:55
NVD link : CVE-2018-25423
Mitre link : CVE-2018-25423
CVE.ORG link : CVE-2018-25423
JSON object : View
Products Affected
No product.
CWE
CWE-120
Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')
