CVE-2023-43628

Severity CVSS v4.0:
Pending analysis
Type:
CWE-191 Integer Underflow (Wrap or Wraparound)
Publication date:
05/12/2023
Last modified:
04/11/2025

Description

An integer underflow vulnerability exists in the NTRIP Stream Parsing functionality of GPSd 3.25.1~dev. A specially crafted network packet can lead to memory corruption. An attacker can send a malicious packet to trigger this vulnerability.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:gpsd_project:gpsd:3.25.1:dev:*:*:*:*:*:*