PT-2020-15691 · Alcatel Lucent · Picotcp-Ng+1

Published

2020-12-11

·

Updated

2020-12-14

·

CVE-2020-24340

CVSS v3.1

7.5

High

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions picoTCP versions through 1.7.0 picoTCP-NG versions through 1.7.0
Description An issue was discovered in the code that processes DNS responses in the pico mdns handle data as answers generic() function in pico mdns.c. This issue leads to an out-of-bounds read, invalid pointer dereference, and Denial-of-Service because the code does not check whether the number of answers/responses specified in a DNS packet header corresponds to the response data available in the packet.
Recommendations For picoTCP versions through 1.7.0, consider disabling the pico mdns handle data as answers generic() function until a patch is available. For picoTCP-NG versions through 1.7.0, consider disabling the pico mdns handle data as answers generic() function until a patch is available. At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2020-24340

Affected Products

Picotcp
Picotcp-Ng