CVE-2020-7248: Buffer Overflow
libubox in OpenWrt before 18.06.7 and 19.x before 19.07.1 has a tagged binary data JSON serialization vulnerability that may cause a stack based buffer overflow.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is CVE-2020-7248?
CVE-2020-7248 is a vulnerability in libubox in OpenWrt before 18.06.7 and 19.x before 19.07.1 that has a tagged binary data JSON serialization vulnerability that may cause a stack-based buffer overflow.
How severe is CVE-2020-7248?
CVE-2020-7248 has a severity value of 7.5 (high).
Which software versions are affected by CVE-2020-7248?
The vulnerability affects OpenWrt versions before 18.06.7 and 19.x before 19.07.1.
How can I fix CVE-2020-7248?
To fix CVE-2020-7248, it is recommended to update OpenWrt to version 18.06.7 or 19.07.1.
Where can I find more information about CVE-2020-7248?
You can find more information about CVE-2020-7248 on the OpenWrt advisory page (https://openwrt.org/advisory/2020-01-31-2) and the NVD website (https://nvd.nist.gov/vuln/detail/CVE-2020-7248#range-4512438).