Arm Whois 3.11 contains a stack-based buffer overflow vulnerability that allows remote attackers to execute arbitrary code by supplying oversized input to the IP address or domain field. Attackers can craft malicious input exceeding 658 bytes with shellcode to overwrite the structured exception handler and gain command execution when the application processes the input.
Metrics
Affected Vendors & Products
References
History
Mon, 01 Jun 2026 22:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Armcode
Armcode arm Whois |
|
| Vendors & Products |
Armcode
Armcode arm Whois |
Mon, 01 Jun 2026 21:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Arm Whois 3.11 contains a stack-based buffer overflow vulnerability that allows remote attackers to execute arbitrary code by supplying oversized input to the IP address or domain field. Attackers can craft malicious input exceeding 658 bytes with shellcode to overwrite the structured exception handler and gain command execution when the application processes the input. | |
| Title | Arm Whois 3.11 Buffer Overflow via SEH Overwrite | |
| Weaknesses | CWE-121 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-06-01T21:00:18.785Z
Reserved: 2026-05-31T12:54:31.247Z
Link: CVE-2018-25427
No data.
Status : Received
Published: 2026-06-01T22:16:14.693
Modified: 2026-06-01T22:16:14.693
Link: CVE-2018-25427
No data.
OpenCVE Enrichment
Updated: 2026-06-01T23:00:16Z