NULL pointer dereference in GoAhead - CVE-2017-14149
Published: September 5, 2017 / Updated: August 8, 2020
GoAhead
EmbedThis
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a NULL pointer dereference error in the websDecodeUrl function in http.c, leading to a crash for a "POST / HTTP/1.1" request. A remote attacker can perform a denial of service (DoS) attack.