CVE-2023-4262

Rejected reason: User data field is not attacker controlled
CVSS

No CVSS.

References

No reference.

Configurations

No configuration.

History

01 Aug 2024, 00:15

Type Values Removed Values Added
Summary
  • (es) Posible desbordamiento del búfer en el subsistema de gestión de Zephyr cuando las afirmaciones están deshabilitadas
Summary (en) Possible buffer overflow  in Zephyr mgmt subsystem when asserts are disabled (en) Rejected reason: User data field is not attacker controlled
CVSS v2 : unknown
v3 : 10.0
v2 : unknown
v3 : unknown
CWE CWE-120
CPE cpe:2.3:o:zephyrproject:zephyr:*:*:*:*:*:*:*:*
References
  • {'url': 'http://packetstormsecurity.com/files/175657/Zephyr-RTOS-3.x.0-Buffer-Overflows.html', 'tags': ['Third Party Advisory'], 'source': 'vulnerabilities@zephyrproject.org'}
  • {'url': 'http://seclists.org/fulldisclosure/2023/Nov/1', 'tags': ['Mailing List', 'Third Party Advisory'], 'source': 'vulnerabilities@zephyrproject.org'}
  • {'url': 'http://www.openwall.com/lists/oss-security/2023/11/07/1', 'tags': ['Mailing List'], 'source': 'vulnerabilities@zephyrproject.org'}
  • {'url': 'https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-56p9-5p3v-hhrc', 'tags': ['Exploit', 'Vendor Advisory'], 'source': 'vulnerabilities@zephyrproject.org'}

22 Dec 2023, 19:33

Type Values Removed Values Added
References () http://packetstormsecurity.com/files/175657/Zephyr-RTOS-3.x.0-Buffer-Overflows.html - () http://packetstormsecurity.com/files/175657/Zephyr-RTOS-3.x.0-Buffer-Overflows.html - Third Party Advisory
References () http://seclists.org/fulldisclosure/2023/Nov/1 - () http://seclists.org/fulldisclosure/2023/Nov/1 - Mailing List, Third Party Advisory
References () http://www.openwall.com/lists/oss-security/2023/11/07/1 - () http://www.openwall.com/lists/oss-security/2023/11/07/1 - Mailing List

Information

Published : 2023-09-27 15:19

Updated : 2024-08-01 00:15


NVD link : CVE-2023-4262

Mitre link : CVE-2023-4262

CVE.ORG link : CVE-2023-4262


JSON object : View

Products Affected

No product.

CWE

No CWE.