CVE-2020-36244

Severity CVSS v4.0:
Pending analysis
Type:
CWE-787 Out-of-bounds Write
Publication date:
10/02/2021
Last modified:
03/02/2023

Description

The daemon in GENIVI diagnostic log and trace (DLT), is vulnerable to a heap-based buffer overflow that could allow an attacker to remotely execute arbitrary code on the DLT-Daemon (versions prior to 2.18.6).

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:genivi:diagnostic_log_and_trace:*:*:*:*:*:*:*:* 2.18.6 (excluding)
cpe:2.3:o:debian:debian_linux:10.0:*:*:*:*:*:*:*