CVE-2022-39836
COVESA 2.18.8 NULL Pointer Dereference / Heap Buffer Over-Read
Severity Score
Exploit Likelihood
Affected Versions
Public Exploits
2Exploited in Wild
-Decision
Descriptions
An issue was discovered in Connected Vehicle Systems Alliance (COVESA) dlt-daemon through 2.18.8. Due to a faulty DLT file parser, a crafted DLT file that crashes the process can be created. This is due to missing validation checks. There is a heap-based buffer over-read of one byte.
Se ha detectado un problema en el dlt-daemon de Connected Vehicle Systems Alliance (COVESA) versiones hasta 2.18.8. Debido a un analizador de archivos DLT defectuoso, puede crearse un archivo DLT diseñado que bloquea el proceso. Esto es debido a una falta de chequeo de comprobación. Se presenta una lectura excesiva del búfer en la región heap de la memoria de un byte
COVESA versions 2.18.8 and below suffer from heap buffer over-read and null pointer dereference vulnerabilities.
CVSS Scores
SSVC
- Decision:-
Timeline
- 2022-09-05 CVE Reserved
- 2022-09-27 CVE Published
- 2024-06-28 EPSS Updated
- 2024-08-03 CVE Updated
- 2024-08-03 First Exploit
- ---------- Exploited in Wild
- ---------- KEV Due Date
CWE
- CWE-125: Out-of-bounds Read
CAPEC
References (3)
URL | Tag | Source |
---|---|---|
https://lists.debian.org/debian-lts-announce/2024/06/msg00021.html | Mailing List |
URL | Date | SRC |
---|---|---|
https://sec-consult.com/vulnerability-lab/advisory/multiple-memory-corruption-vulnerabilities-in-covesa-dlt-daemon | 2024-08-03 | |
https://seclists.org/fulldisclosure/2022/Sep/24 | 2024-08-03 |
URL | Date | SRC |
---|
URL | Date | SRC |
---|
Affected Vendors, Products, and Versions
Vendor | Product | Version | Other | Status | ||||||
---|---|---|---|---|---|---|---|---|---|---|
Vendor | Product | Version | Other | Status | <-- --> | Vendor | Product | Version | Other | Status |
Genivi Search vendor "Genivi" | Diagnostic Log And Trace Search vendor "Genivi" for product "Diagnostic Log And Trace" | <= 2.18.8 Search vendor "Genivi" for product "Diagnostic Log And Trace" and version " <= 2.18.8" | - |
Affected
|