A buffer overflow in the dlt_filter_load function in dlt_common.c from dlt-daemon through 2.18.5 (GENIVI Diagnostic Log and Trace) allows arbitrary code execution because fscanf is misused (no limit on the number of characters to be read in the format argument).
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2020-11-30T00:00:00

Updated: 2024-08-04T16:55:09.676Z

Reserved: 2020-11-30T00:00:00

Link: CVE-2020-29394

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2020-11-30T19:15:12.487

Modified: 2023-02-03T18:42:47.353

Link: CVE-2020-29394

cve-icon Redhat

No data.