Описание
Out-of-bounds Write vulnerability in TCP stack of Apache NuttX (incubating) versions up to and including 9.1.0 and 10.0.0 allows attacker to corrupt memory by supplying arbitrary urgent data pointer offsets within TCP packets including beyond the length of the packet.
Ссылки
- Mailing ListThird Party Advisory
- Mailing ListVendor Advisory
- Mailing ListVendor Advisory
- Mailing ListThird Party Advisory
- Mailing ListVendor Advisory
- Mailing ListVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 9.1.0 (включая)
Одно из
cpe:2.3:a:apache:nuttx:*:*:*:*:*:*:*:*
cpe:2.3:a:apache:nuttx:10.0.0:*:*:*:*:*:*:*
EPSS
Процентиль: 82%
0.0174
Низкий
9.1 Critical
CVSS3
6.4 Medium
CVSS2
Дефекты
CWE-787
CWE-787
Связанные уязвимости
github
больше 3 лет назад
Out-of-bounds Write vulnerability in TCP stack of Apache NuttX (incubating) versions up to and including 9.1.0 and 10.0.0 allows attacker to corrupt memory by supplying arbitrary urgent data pointer offsets within TCP packets including beyond the length of the packet.
EPSS
Процентиль: 82%
0.0174
Низкий
9.1 Critical
CVSS3
6.4 Medium
CVSS2
Дефекты
CWE-787
CWE-787