PT-2019-17447 · Blynk · Blynk-Library

Lilith Wyatt

·

Publicado

2019-09-05

·

Atualizado

2022-06-27

·

CVE-2019-5065

CVSS v3.1

5.3

Média

VetorAV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Blynk-Library version 0.6.1
Description An information disclosure issue exists in the packet-parsing functionality. A specially crafted packet can cause an unterminated strncpy, resulting in information disclosure. An attacker can send a packet to trigger this issue.
Recommendations For Blynk-Library version 0.6.1, at the moment, there is no information about a newer version that contains a fix for this issue.

Exploit

Correção

Out of bounds Read

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

CVE-2019-5065

Produtos afetados

Blynk-Library