An issue was discovered in Contiki through 3.0. An Out-of-Bounds Read vulnerability exists in the uIP TCP/IP Stack component when calculating the checksums for IP packets in upper_layer_chksum in net/ipv4/uip.c.
References
Link | Resource |
---|---|
https://cert-portal.siemens.com/productcert/pdf/ssa-541018.pdf | Patch Third Party Advisory |
https://us-cert.cisa.gov/ics/advisories/icsa-20-343-01 | Third Party Advisory US Government Resource |
https://www.kb.cert.org/vuls/id/815128 | Third Party Advisory US Government Resource |
https://cert-portal.siemens.com/productcert/pdf/ssa-541018.pdf | Patch Third Party Advisory |
https://us-cert.cisa.gov/ics/advisories/icsa-20-343-01 | Third Party Advisory US Government Resource |
https://www.kb.cert.org/vuls/id/815128 | Third Party Advisory US Government Resource |
Configurations
Configuration 1 (hide)
AND |
|
Configuration 2 (hide)
|
Configuration 3 (hide)
AND |
|
Configuration 4 (hide)
AND |
|
Configuration 5 (hide)
AND |
|
Configuration 6 (hide)
AND |
|
History
21 Nov 2024, 05:02
Type | Values Removed | Values Added |
---|---|---|
References | () https://cert-portal.siemens.com/productcert/pdf/ssa-541018.pdf - Patch, Third Party Advisory | |
References | () https://us-cert.cisa.gov/ics/advisories/icsa-20-343-01 - Third Party Advisory, US Government Resource | |
References | () https://www.kb.cert.org/vuls/id/815128 - Third Party Advisory, US Government Resource |
Information
Published : 2020-12-11 22:15
Updated : 2024-11-21 05:02
NVD link : CVE-2020-13987
Mitre link : CVE-2020-13987
CVE.ORG link : CVE-2020-13987
JSON object : View
Products Affected
siemens
- sentron_pac3200_firmware
- sentron_3va_com800
- sentron_pac4200
- sentron_pac3200
- sentron_pac4200_firmware
- sentron_3va_com800_firmware
- sentron_3va_com100_firmware
- sentron_3va_com100
uip_project
- uip
open-iscsi_project
- open-iscsi
contiki-os
- contiki
CWE
CWE-125
Out-of-bounds Read