CVE-2018-16667: High severity naranjascontocados vulnerability
Published Sep 7, 2018
·Updated
An issue was discovered in Contiki-NG through 4.1. There is a buffer over-read in lookup in os/storage/antelope/lvm.c while parsing AQL (lvmregistervariable, lvmsetvariablevalue, createintersection, createunion).
Affected Software
1 affected component
Contiki-NG Contiki-ng.<=4.1
Event History
Sep 7, 2018
CVE Published
via MITRE·05:00 PM
Data Sourced
via MITRE·05:00 PM
Description
Frequently Asked Questions
1
What is CVE-2018-16667?
CVE-2018-16667 is a vulnerability discovered in Contiki-NG through version 4.1 that allows for a buffer over-read in the lookup function in os/storage/antelope/lvm.c.
2
How severe is CVE-2018-16667?
CVE-2018-16667 has a severity level of high with a severity value of 7.
3
What software is affected by CVE-2018-16667?
Contiki-NG versions up to and including 4.1 are affected by CVE-2018-16667.
4
How can I fix CVE-2018-16667?
A fix or patch for CVE-2018-16667 has not been provided at the moment.
5
Where can I find more information about CVE-2018-16667?
You can find more information about CVE-2018-16667 on the Contiki-NG GitHub page: https://github.com/contiki-ng/contiki-ng/issues/597