CVE-2020-15471: Critical severity ntop nDPI vulnerability
Published Jul 1, 2020
·Updated
In nDPI through 3.2, the packet parsing code is vulnerable to a heap-based buffer over-read in ndpiparsepacketlineinfo in lib/ndpimain.c.
Affected Software
1 affected component
ntop nDPI<=3.2
Remediation
Event History
Jul 1, 2020
CVE Published
via MITRE·10:54 AM
Data Sourced
via MITRE·10:54 AM
Description
Data Sourced
via NVD·11:15 AM
RemedyDescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2020-15471?
CVE-2020-15471 has been classified as a medium severity vulnerability.
2
How do I fix CVE-2020-15471?
To mitigate CVE-2020-15471, upgrade nDPI to version 3.2 or later.
3
What types of systems are affected by CVE-2020-15471?
CVE-2020-15471 affects all versions of nDPI up to and including version 3.2.
4
What kind of vulnerability is CVE-2020-15471?
CVE-2020-15471 is a heap-based buffer over-read vulnerability found in the packet parsing code.
5
Where can I find more information about CVE-2020-15471?
Detailed information about CVE-2020-15471 can be found in the project's release notes or repositories.