Vulnerabilities > CVE-2023-0847 - Out-of-bounds Write vulnerability in Dash7-Alliance Dash7 Alliance Protcol

047910
CVSS 8.1 - HIGH
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
high complexity
dash7-alliance
CWE-787

Summary

The Sub-IoT implementation of the DASH 7 Alliance protocol has a vulnerability that can lead to an out-of-bounds write prior to implementation version 0.5.0. If the protocol has been compiled using default settings, this will only grant the attacker access to allocated but unused memory. However, if it was configured using non-default settings, there is the possibility that exploiting this vulnerability could lead to system crashes and remote code execution.

Vulnerable Configurations

Part Description Count
Application
Dash7-Alliance
1

Common Weakness Enumeration (CWE)