Описание
Potential buffer overflow vulnerabilities in the following locations: https://github.com/zephyrproject-rtos/zephyr/blob/main/drivers/usb/device/usb_dc_native_posix.c#L359 https://github.com/zephyrproject-rtos/zephyr/blob/main/drivers/usb/device/usb_dc_native_posix.c#L359 https://github.com/zephyrproject-rtos/zephyr/blob/main/subsys/usb/device/class/netusb/function_rndis... https://github.com/zephyrproject-rtos/zephyr/blob/main/subsys/usb/device/class/netusb/function_rndis.c#L841
Ссылки
- ExploitThird Party Advisory
- Mailing ListThird Party Advisory
- Mailing List
- ExploitVendor Advisory
- ExploitThird Party Advisory
- Mailing ListThird Party Advisory
- Mailing List
- ExploitVendor Advisory
Уязвимые конфигурации
Конфигурация 1Версия до 3.3.0 (включая)
cpe:2.3:o:zephyrproject:zephyr:*:*:*:*:*:*:*:*
EPSS
Процентиль: 53%
0.00301
Низкий
6.4 Medium
CVSS3
6.8 Medium
CVSS3
Дефекты
CWE-120
CWE-120
EPSS
Процентиль: 53%
0.00301
Низкий
6.4 Medium
CVSS3
6.8 Medium
CVSS3
Дефекты
CWE-120
CWE-120