CVE-2018-16524: Infoleak
Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component allow information disclosure during parsing of TCP options in prvCheckOptions.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2018-16524?
CVE-2018-16524 is a vulnerability in Amazon Web Services (AWS) FreeRTOS that allows for information disclosure during the parsing of TCP options.
How severe is CVE-2018-16524?
CVE-2018-16524 has a severity score of 5.9, which is considered medium.
Which software versions are affected by CVE-2018-16524?
CVE-2018-16524 affects Amazon Web Services (AWS) FreeRTOS through version 1.3.1 and FreeRTOS up to version 10.0.1.
How can I mitigate the vulnerability?
To mitigate the vulnerability, it is recommended to update to a fixed version of the software and follow any guidance provided by the vendor.
Where can I find more information about CVE-2018-16524?
More information about CVE-2018-16524 can be found in the provided references: [link1], [link2], [link3].