Intel

AIKIDO-2024-10423

chriskohlhoff.asio is vulnerable to Missing Standardized Error Handling Mechanism

Missing Standardized Error Handling MechanismCVE-2019-25219 Published Nov 5, 2024

75

High Risk

This Affects:

c++chriskohlhoff.asio
1.0.0 - 1.12.2
Fixed in 1.13.0
Are you affected? Scan for Free

TL;DR

Asio C++ Library before version 1.13.0 lacks a fallback error code in the case of SSL_ERROR_SYSCALL with no associated error information from the SSL library being used.

Who does this affect?

You are affected if you are using a version that falls within the vulnerable range.

Background info

chriskohlhoff.asio is vulnerable to Missing Standardized Error Handling Mechanism in versions 1.0.0 - 1.12.2.

How to fix this

Upgrade the chriskohlhoff.asio library to the patch version.