CVE-2019-3563
https://notcve.org/view.php?id=CVE-2019-3563
Wangle's LineBasedFrameDecoder contains logic for identifying newlines which incorrectly advances a buffer, leading to a potential underflow. This affects versions of Wangle prior to v2019.04.22.00 El decodificador LineBasedFrameDecoder de Wangle contiene lógica para identificar nuevas líneas que avanzan incorrectamente un búfer, lo que conduce a un posible desbordamiento. Esto afecta a las versiones de Wangle anteriores a la v2019.04.22.00 • https://github.com/facebook/wangle/commit/5b3bceca875e4ea4ed9d14c20b20ce46c92c13c6 • CWE-126: Buffer Over-read CWE-787: Out-of-bounds Write •
CVE-2019-3554
https://notcve.org/view.php?id=CVE-2019-3554
Wangle's AcceptRoutingHandler incorrectly casts a socket when accepting a TLS 1.3 connection, leading to a potential denial of service attack against systems accepting such connections. This affects versions of Wangle prior to v2019.01.14.00 AcceptRoutingHandler, de Wangle, convierte incorrectamente un socket al aceptar una conexión TLS 1.3, lo que conduce a un potencial ataque de denegación de servicio (DoS) contra los sistemas que aceptan tales conexiones. Esto afecta a las versiones de Wangle anteriores a la v2019.01.14.00. • https://github.com/facebook/wangle/commit/3b17ba10a82c71e7808760e027ac6af687e06074 • CWE-19: Data Processing Errors CWE-400: Uncontrolled Resource Consumption •