First published: Mon May 24 2021(Updated: )
Possible read out of bounds in dns read. Zephyr versions >= 1.14.2, >= 2.3.0 contain Out-of-bounds Read (CWE-125). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-mm57-9hqw-qh44
Credit: vulnerabilities@zephyrproject.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zephyrproject Zephyr | <=1.14.2 | |
Zephyrproject Zephyr | >=2.0.0<=2.3.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
The severity of CVE-2020-13601 is critical with a CVSS score of 9.8.
Zephyr versions >= 1.14.2 and >= 2.3.0 are affected by CVE-2020-13601.
CVE-2020-13601 is an out-of-bounds read vulnerability of type CWE-125.
You can find more information about CVE-2020-13601 at the following link: http://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-mm57-9hqw-qh44
There is no known fix or patch available at this time for CVE-2020-13601. It is recommended to monitor the vendor's website for updates or mitigation measures.