CVE-2020-13910 - CERT CVE
ID CVE-2020-13910
Sažetak Pengutronix Barebox through v2020.05.0 has an out-of-bounds read in nfs_read_reply in net/nfs.c because a field of an incoming network packet is directly used as a length field without any bounds check.
Reference
CVSS
Base: 6.4
Impact: 4.9
Exploitability:10.0
Pristup
VektorSloženostAutentikacija
NETWORK LOW NONE
Impact
PovjerljivostCjelovitostDostupnost
PARTIAL NONE PARTIAL
CVSS vektor AV:N/AC:L/Au:N/C:P/I:N/A:P
Zadnje važnije ažuriranje 10-06-2020 - 20:22
Objavljeno 07-06-2020 - 20:15