cbcvebase.
CVE-2012-0806
published 2012-01-27

CVE-2012-0806: Buffer overflow in Bip 0.8.8 and earlier might allow remote authenticated users to execute arbitrary code via vectors involving a series of TCP connections…

PriorityP433medium6.5CVSS 2.0
AVNACLAuSCPIPAP
EPSS
3.33%
87.4th percentile
Buffer overflow in Bip 0.8.8 and earlier might allow remote authenticated users to execute arbitrary code via vectors involving a series of TCP connections that triggers use of many open file descriptors.

Affected

20 ranges
VendorProductVersion rangeFixed in
debianbip< bip 0.8.8-2 (bookworm)bip 0.8.8-2 (bookworm)
duckcorpbip<= 0.8.8
duckcorpbip
duckcorpbip
duckcorpbip
duckcorpbip
duckcorpbip
duckcorpbip
duckcorpbip
duckcorpbip
duckcorpbip
duckcorpbip
duckcorpbip
duckcorpbip
duckcorpbip
duckcorpbip
duckcorpbip>= 0 < 0.8.8-20.8.8-2
duckcorpbip>= 0 < 0.8.8-20.8.8-2
duckcorpbip>= 0 < 0.8.8-20.8.8-2
duckcorpbip>= 0 < 0.8.8-20.8.8-2

CVSS provenance

nvdv2.06.5MEDIUMAV:N/AC:L/Au:S/C:P/I:P/A:P
osv6.5MEDIUM
vendor_debian6.5MEDIUM
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.