CVE-2020-14937

Severity CVSS v4.0:
Pending analysis
Type:
CWE-125 Out-of-bounds Read
Publication date:
18/08/2020
Last modified:
25/08/2020

Description

Memory access out of buffer boundaries issues was discovered in Contiki-NG 4.4 through 4.5, in the SNMP BER encoder/decoder. The length of provided input/output buffers is insufficiently verified during the encoding and decoding of data. This may lead to out-of-bounds buffer read or write access in BER decoding and encoding functions.

Vulnerable products and versions

CPE From Up to
cpe:2.3:o:contiki-ng:contiki-ng:*:*:*:*:*:*:*:* 4.4 (including) 4.5 (including)