CVE-2018-1000804: Buffer Overflow
contiki-ng version 4 contains a Buffer Overflow vulnerability in AQL (Antelope Query Language) database engine that can result in Attacker can perform Remote Code Execution on device using Contiki-NG operating system. This attack appear to be exploitable via Attacker must be able to run malicious AQL code (e.g. via SQL-like Injection attack).
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2018-1000804.
What is the severity of CVE-2018-1000804?
The severity of CVE-2018-1000804 is critical, with a severity value of 9.8.
What is the affected software for CVE-2018-1000804?
The affected software for CVE-2018-1000804 is Contiki-ng version 4.
How does CVE-2018-1000804 affect Contiki-ng?
CVE-2018-1000804 affects Contiki-ng by allowing an attacker to perform remote code execution on a device using Contiki-NG operating system.
Is there a fix available for CVE-2018-1000804?
Yes, a fix is available for CVE-2018-1000804. Please refer to the provided references for more information on applying the fix.