Description
CCN-lite 2.0.0 Beta allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact because the ccnl_ndntlv_prependBlob function in ccnl-pkt-ndntlv.c can be called with wrong arguments. Specifically, there is an incorrect integer data type causing a negative third argument in some cases of crafted TLV data with inconsistent length information.
No analysis available yet.
Remediation
No remediation available yet.
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2018-18782 | CCN-lite 2.0.0 Beta allows remote attackers to cause a denial of service (buffer overflow) or possibly have unspecified other impact because the ccnl_ndntlv_prependBlob function in ccnl-pkt-ndntlv.c can be called with wrong arguments. Specifically, there is an incorrect integer data type causing a negative third argument in some cases of crafted TLV data with inconsistent length information. |
References
| Link | Providers |
|---|---|
| https://github.com/cn-uofbasel/ccn-lite/issues/191 |
|
History
No history.
Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-09-16T20:17:14.528Z
Reserved: 2018-02-14T00:00:00.000Z
Link: CVE-2018-7039
No data.
Status : Modified
Published: 2018-02-14T19:29:00.307
Modified: 2024-11-21T04:11:33.187
Link: CVE-2018-7039
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD