In CCN-lite 2, the Parser of NDNTLV does not verify whether a certain component's length field matches the actual component length, which has a resultant buffer overflow and out-of-bounds memory accesses.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2018-02-13T20:00:00Z

Updated: 2024-09-16T20:41:39.839Z

Reserved: 2018-02-13T00:00:00Z

Link: CVE-2018-6953

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2018-02-13T20:29:00.497

Modified: 2018-03-16T13:45:04.323

Link: CVE-2018-6953

cve-icon Redhat

No data.