Vulnerabilities > CVE-2020-14937 - Out-of-bounds Write vulnerability in Contiki-Ng 4.4/4.5

047910
CVSS 9.1 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
NONE
Availability impact
HIGH
network
low complexity
contiki-ng
CWE-787
critical

Summary

Memory access out of buffer boundaries issues was discovered in Contiki-NG 4.4 through 4.5, in the SNMP BER encoder/decoder. The length of provided input/output buffers is insufficiently verified during the encoding and decoding of data. This may lead to out-of-bounds buffer read or write access in BER decoding and encoding functions.

Vulnerable Configurations

Part Description Count
OS
Contiki-Ng
2

Common Weakness Enumeration (CWE)