CVE-2018-16522: High severity amazon freertos vulnerability
Amazon Web Services (AWS) FreeRTOS through 1.3.1 has an uninitialized pointer free in SOCKETSSetSockOpt.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-16522?
CVE-2018-16522 is a vulnerability found in Amazon Web Services (AWS) FreeRTOS through version 1.3.1 that allows for an uninitialized pointer free in SOCKETS_SetSockOpt.
How severe is CVE-2018-16522?
CVE-2018-16522 has a severity rating of 8.1, which is considered high.
How does CVE-2018-16522 affect Amazon Web Services (AWS) FreeRTOS?
CVE-2018-16522 affects Amazon Web Services (AWS) FreeRTOS through version 1.3.1 by allowing for an uninitialized pointer free in SOCKETS_SetSockOpt, which can lead to potential security compromise.
Is there a fix available for CVE-2018-16522?
Yes, a fix is available for CVE-2018-16522. It is recommended to update to the latest version of Amazon Web Services (AWS) FreeRTOS.
Where can I find more information about CVE-2018-16522?
More information about CVE-2018-16522 can be found in the following references: [Link 1](https://blog.zimperium.com/freertos-tcpip-stack-vulnerabilities-details/), [Link 2](https://blog.zimperium.com/freertos-tcpip-stack-vulnerabilities-put-wide-range-devices-risk-compromise-smart-homes-critical-infrastructure-systems/), [Link 3](https://github.com/aws/amazon-freertos/blob/v1.3.2/CHANGELOG.md)