← Back

CVE-2014-4501

nvd nist
Published: Jul 23, 2014Modified: May 6, 2026

JSON object

Loading...
10.0
Vector
AV:N/AC:L/Au:N/C:C/I:C/A:C
Exploitability: 10.0 / Impact: 10.0
Source: NVD

Description

Multiple stack-based buffer overflows in sgminer before 4.2.2, cgminer before 4.3.5, and BFGMiner before 3.3.0 allow remote pool servers to have unspecified impact via a long URL in a client.reconnect stratum message to the (1) extract_sockaddr or (2) parse_reconnect functions in util.c.

Affected (22)

Sgminer
Cgminer
1 product
Bfgminer
Configuration A
7 vulnerable
Vulnerable SoftwareAffected Versions
Sgminer Project
Up to 4.2.1
Version 4.0.0
Version 4.1.0
Version 4.1.153
Version 4.1.242
Version 4.1.271
Version 4.2.0
Configuration B
5 vulnerable
Vulnerable SoftwareAffected Versions
Cgminer Project
Up to 4.3.4
Version 4.3.0
Version 4.3.1
Version 4.3.2
Version 4.3.3
Configuration C
10 vulnerable
Vulnerable SoftwareAffected Versions
Bfgminer
Up to 3.2.9
Version 3.2.0
Version 3.2.1
Version 3.2.2
Version 3.2.3
Version 3.2.4
Version 3.2.5
Version 3.2.6
Version 3.2.7
Version 3.2.8

Timeline

No history available yet.