swoole/swoole-src
cpe:2.3:a:swoole:swoole:*:*:*:*:*:*:*
- < 6.0.2
An integer overflow vulnerability has been identified in the Swoole Swoole-Source library, specifically within the Hiredis module, in versions prior to 6.0.2. This vulnerability arises in the 'sds.C' file, where inadequate safety measures during memory allocation can lead to heap corruption.
Exploitation of this vulnerability can cause heap corruption, potentially allowing for arbitrary code execution or other memory-related attacks.
Users can upgrade to Swoole Swoole-Source version 6.0.2 or later to address this vulnerability.
Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.