Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-4mgv-g5j9-fr8q

Опубликовано: 20 фев. 2024
Источник: github
Github: Не прошло ревью
CVSS3: 5.9

Описание

A denial of service vulnerability exists in the ICMP and ICMPv6 parsing functionality of Weston Embedded uC-TCP-IP v3.06.01. A specially crafted network packet can lead to an out-of-bounds read. An attacker can send a malicious packet to trigger this vulnerability.This vulnerability concerns a denial of service within the parsing an IPv6 ICMPv6 packet.

A denial of service vulnerability exists in the ICMP and ICMPv6 parsing functionality of Weston Embedded uC-TCP-IP v3.06.01. A specially crafted network packet can lead to an out-of-bounds read. An attacker can send a malicious packet to trigger this vulnerability.This vulnerability concerns a denial of service within the parsing an IPv6 ICMPv6 packet.

EPSS

Процентиль: 59%
0.00385
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-125
CWE-126

Связанные уязвимости

CVSS3: 5.9
nvd
почти 2 года назад

A denial of service vulnerability exists in the ICMP and ICMPv6 parsing functionality of Weston Embedded uC-TCP-IP v3.06.01. A specially crafted network packet can lead to an out-of-bounds read. An attacker can send a malicious packet to trigger this vulnerability.This vulnerability concerns a denial of service within the parsing an IPv6 ICMPv6 packet.

CVSS3: 5.9
fstec
почти 2 года назад

Уязвимость функциональности разбора ICMP и ICMPv6 реализации генератора ISN стека протоколов, используемого uC/OS, uC/TCP-IP, позволяющая нарушителю вызвать отказ в обслуживании

EPSS

Процентиль: 59%
0.00385
Низкий

5.9 Medium

CVSS3

Дефекты

CWE-125
CWE-126