Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown

CVE-2024-24263

Disclosure Date: February 05, 2024 (last updated February 08, 2024)
Lotos WebServer v0.1.1 was discovered to contain a Use-After-Free (UAF) vulnerability via the response_append_status_line function at /lotos/src/response.c.
Attacker Value
Unknown

CVE-2024-22088

Disclosure Date: January 05, 2024 (last updated January 11, 2024)
Lotos WebServer through 0.1.1 (commit 3eb36cc) has a use-after-free in buffer_avail() at buffer.h via a long URI, because realloc is mishandled.