CVE-2022-25050

rtl_433 21.12 was discovered to contain a stack overflow in the function somfy_iohc_decode(). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted file.
References
Configurations

Configuration 1 (hide)

cpe:2.3:a:rtl_433_project:rlt_433:21.12:*:*:*:*:*:*:*

History

09 Mar 2022, 18:45

Type Values Removed Values Added
CPE cpe:2.3:a:rtl_433_project:rlt_433:21.12:*:*:*:*:*:*:*
CWE CWE-787
CVSS v2 : unknown
v3 : unknown
v2 : 4.3
v3 : 5.5
References (MISC) https://github.com/merbanan/rtl_433/issues/1960 - (MISC) https://github.com/merbanan/rtl_433/issues/1960 - Issue Tracking, Patch, Third Party Advisory
References (MISC) https://huntr.dev/bounties/6c9cd35f-a206-4fdf-b6d1-fcd50926c2d9/ - (MISC) https://huntr.dev/bounties/6c9cd35f-a206-4fdf-b6d1-fcd50926c2d9/ - Permissions Required, Third Party Advisory
References (MISC) https://github.com/merbanan/rtl_433/commit/2dad7b9fc67a1d0bfbe520fbd821678b8f8cc7a8 - (MISC) https://github.com/merbanan/rtl_433/commit/2dad7b9fc67a1d0bfbe520fbd821678b8f8cc7a8 - Patch, Third Party Advisory

02 Mar 2022, 00:15

Type Values Removed Values Added
New CVE

Information

Published : 2022-03-02 00:15

Updated : 2024-02-04 22:29


NVD link : CVE-2022-25050

Mitre link : CVE-2022-25050

CVE.ORG link : CVE-2022-25050


JSON object : View

Products Affected

rtl_433_project

  • rlt_433
CWE
CWE-787

Out-of-bounds Write