A vulnerability has been identified in OpenV2G (V0.9.4). The OpenV2G EXI parsing feature is missing a length check when parsing X509 serial numbers. Thus, an attacker could introduce a buffer overflow that leads to memory corruption.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: siemens
Published: 2022-05-10T09:47:00
Updated: 2024-08-03T05:25:32.069Z
Reserved: 2022-03-18T00:00:00
Link: CVE-2022-27242
Vulnrichment
No data.
NVD
Status : Modified
Published: 2022-05-20T13:15:15.027
Modified: 2024-11-21T06:55:28.903
Link: CVE-2022-27242
Redhat
No data.