Skip to content
KitploitKITPLOIT
ToolsBlog
Submit
ToolsBlog
Submit

Hacking, PenTest, and Cybersecurity Tools for Your Security Arsenal!

Kitploit is a directory of hacking, cybersecurity, and pentesting tools. Discover the latest project updates to find vulnerabilities, analyze systems, automate testing, and strengthen your security.

··Feeds·Contact·Privacy·© 2026 Kitploit

Tool Directory

Categories

View all categories
Loading categories
CVE-2024-28515 — Documentation of CVE-2024-28515, a buffer overflow vulnerability in CSAPP Lab3 (buflab-update.pl), enabling remote code execution via crafted URL requests. | Kitploit
Tools/GitHubGitHub/heshi906/cve-2024-28515
Vulnerability AnalysisExploitationPapers & ResearchLearning & EducationBinary Exploitation
GitHubheshi906/cve-2024-28515

CVE-2024-28515

Documentation of CVE-2024-28515, a buffer overflow vulnerability in CSAPP Lab3 (buflab-update.pl), enabling remote code execution via crafted URL requests.

View Repository
1122 years agoNot yet reviewed

Most Popular

View all →

Discover the most used tools by our community.

Explore all tools

Browse our collection of tools

View all tools →
Share

CVE-2024-28515

Description

Buffer Overflow vulnerability in CSAPP_Lab CSAPP Lab3 15-213 Fall 20xx allows a remote attacker to execute arbitrary code via the lab3 of csapp,lab3/buflab-update.pl component.

Additional Information

CNVD has completed verification of this vulnerability, but it has not been publicly disclosed because the vulnerability has not been fixed.

Vulnerability Type

Buffer Overflow

Vendor of Product

CSAPP_Lab (Lab of CS:APP3e)

Affected Product Code Base

CSAPP Lab3 - 15-213, Fall 20xx (There's only one version.)

Affected Component

lab3 of csapp,lab3/buflab-update.pl

Attack Vectors

If the server deploys lab3 of csapp_lab, an attacker can access a specific URL to execute arbitrary code.

Discoverer

Yuchao He, Yijie Xun, Jiajia Liu, Yuwei Yang, Bomin Mao, Hongzhi Guo (all discoverers from Northwestern Polytechnical University)

Reference

  • CSAPP Official Website
  • CSAPP Lab Lab Website

For the POC, refer to another file in the same folder.

Download Tool