PT-2023-19071 · Unknown · Contiki-Ng

Diff-Fusion

+2

·

Published

2023-01-25

·

Updated

2023-02-07

·

CVE-2023-23609

CVSS v3.1

8.2

High

VectorAV:A/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:L
Name of the Vulnerable Software and Affected Versions Contiki-NG versions prior to and including 4.8
Description The issue concerns an out-of-bounds write in the BLE-L2CAP module of Contiki-NG, an open-source operating system for IoT devices. This module handles packet fragmentation up to the configured MTU size. When fragments are reassembled, they are stored in a packet buffer without verifying if the buffer is large enough, potentially leading to an out-of-bounds write of up to 1152 bytes in the default configuration.
Recommendations For versions prior to and including 4.8, apply the patch in Contiki-NG pull request #2254 to fix the issue. As a temporary workaround, consider restricting the use of the BLE-L2CAP module until the patch is applied.

Exploit

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2023-23609
GHSA-QR4Q-6H3M-H3G7

Affected Products

Contiki-Ng