CVE-2017-12465

Severity CVSS v4.0:
Pending analysis
Type:
CWE-190 Integer Overflow or Wraparound
Publication date:
07/02/2018
Last modified:
23/02/2018

Description

Multiple integer overflows in CCN-lite before 2.00 allow context-dependent attackers to have unspecified impact via vectors involving the (1) vallen variable in the iottlv_parse_sequence function or (2) typ, vallen and i variables in the localrpc_parse function.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:ccn-lite:ccn-lite:*:*:*:*:*:*:*:* 2.0.0 (excluding)