openwrt ▾
›
openwrt-25.12 ▾
›
vulnerability
›
CVE-2020-13987
Component Overview
Vulnerability Overview
Name
CVE-2020-13987
Source
NVD (
link
)
Debian (
link
)
Description
An issue was discovered in Contiki through 3.0. An Out-of-Bounds Read vulnerability exists in the uIP TCP/IP Stack component when calculating the checksums for IP packets in upper_layer_chksum in net/ipv4/uip.c.
CWEs
CWE-125
Published Date
Dec 11, 2020
Updated Date
Jun 17, 2026
Workaround
-
Advisories
https://cert-portal.siemens.com/productcert/pdf/ssa-541018.pdf
Patch
https://us-cert.cisa.gov/ics/advisories/icsa-20-343-01
US Government Resource
https://www.kb.cert.org/vuls/id/815128
US Government Resource
https://cert-portal.siemens.com/productcert/pdf/ssa-541018.pdf
Patch
https://us-cert.cisa.gov/ics/advisories/icsa-20-343-01
US Government Resource
https://www.kb.cert.org/vuls/id/815128
US Government Resource
Analysis
#
Affected Component
Analysis
open-iscsi
Exploitable
Vulnerability Ratings
#
7.5
CVSSv31
5
CVSSv2
Others affected components
#
Name
Project
Project Version
Version
Status
open-iscsi
buildroot
2025.02.x
2.1.9
Exploitable
open-iscsi
buildroot
master
2.1.9
Exploitable
open-iscsi
openwrt
master
2.1.10-r1
Exploitable