The Apache NuttX (Incubating) project provides an optional separate "apps" repository which contains various optional components and example programs. One of these, ftpd, had a NULL pointer dereference bug. The NuttX RTOS itself is not affected. Users of the optional apps repository are affected only if they have enabled ftpd. Versions 6.15 to 8.2 are affected.
References
Link | Resource |
---|---|
https://lists.apache.org/thread.html/re3adc65ff4d8d9c34e5bccba3941a28cbb0a47191c150df2727e101d%40%3Cdev.nuttx.apache.org%3E | Mailing List Patch Third Party Advisory |
https://lists.apache.org/thread.html/re3adc65ff4d8d9c34e5bccba3941a28cbb0a47191c150df2727e101d%40%3Cdev.nuttx.apache.org%3E | Mailing List Patch Third Party Advisory |
Configurations
History
21 Nov 2024, 05:11
Type | Values Removed | Values Added |
---|---|---|
References | () https://lists.apache.org/thread.html/re3adc65ff4d8d9c34e5bccba3941a28cbb0a47191c150df2727e101d%40%3Cdev.nuttx.apache.org%3E - Mailing List, Patch, Third Party Advisory |
Information
Published : 2020-05-12 15:15
Updated : 2024-11-21 05:11
NVD link : CVE-2020-1939
Mitre link : CVE-2020-1939
CVE.ORG link : CVE-2020-1939
JSON object : View
Products Affected
apache
- nuttx
CWE
CWE-476
NULL Pointer Dereference