CVE-2018-16527: Infoleak
Published Dec 6, 2018
·Updated
Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component allow information disclosure during parsing of ICMP packets in prvProcessICMPPacket.
Affected Software
2 affected components
Amazon Amazon Web Services Freertos<=1.3.1
Amazon FreeRTOS<=10.0.1
Remediation
Event History
Dec 6, 2018
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this vulnerability?
The vulnerability ID for this vulnerability is CVE-2018-16527.
2
What is the severity rating of CVE-2018-16527?
CVE-2018-16527 has a severity rating of medium (5.9).
3
What is the affected software by CVE-2018-16527?
The affected software by CVE-2018-16527 includes Amazon Web Services FreeRTOS through 1.3.1 and FreeRTOS up to V10.0.1 (with FreeRTOS+TCP).
4
How does CVE-2018-16527 allow information disclosure?
CVE-2018-16527 allows information disclosure during parsing of ICMP packets in prvProcessICMPPacket.
5
Are there any references available for CVE-2018-16527?
Yes, you can find references for CVE-2018-16527 at the following links: [link1], [link2], [link3].