High severity8.8NVD Advisory· Published Aug 20, 2019· Updated Jun 17, 2026
CVE-2019-5039
CVE-2019-5039
Description
An exploitable command execution vulnerability exists in the ASN1 certificate writing functionality of Openweave-core version 4.0.2. A specially crafted weave certificate can trigger a heap-based buffer overflow, resulting in code execution. An attacker can craft a weave certificate to trigger this vulnerability.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3- cpe:2.3:a:openweave:openweave-core:4.0.2:*:*:*:*:*:*:*
- Openweave/Openweave-coredescription
- Range: =4.0.2
Patches
Vulnerability mechanics
References
1- talosintelligence.com/vulnerability_reports/TALOS-2019-0802nvdExploitThird Party Advisory
News mentions
0No linked articles in our index yet.