Description


RCE/DOS: Linked-list corruption leading to large out-of-bounds write while sorting for forged fragment list in Zephyr. Zephyr versions >= >=2.4.0 contain Out-of-bounds Write (CWE-787). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-fj4r-373f-9456

Related CPE's


Weaknesses



CWE-787


CWE-787

CVSS impact metrics


CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:L/I:L/A:L

7.1 · High

Information


Source identifier

[email protected]

Vulnerability status

Modified

Published

2021-10-12T20:15:08.150Z

4 years ago

Last modified

2024-11-21T05:21:18.670Z

1 year ago