Logo
vulnerabilityCVE-2023-36321
Name
CVE-2023-36321
Source
NVD ( link)Debian ( link)
Description
Connected Vehicle Systems Alliance (COVESA) up to v2.18.8 was discovered to contain a buffer overflow via the component /shared/dlt_common.c.
Published Date
Updated Date
Workaround
-

Analysis#


Affected Component
Analysis
dlt-daemon
Patched

Vulnerability Ratings#


7.5
CVSSv31
7.5
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
yocto
master
3.0.0
Not Affected
yocto
scarthgap
2.18.10
Not Affected

Resolved with patches#


dlt-daemon (yocto:kirkstone)

#
Title
Author
Resolve
1
Check for negative index in dlt_file_message
Michael Methner <mmethner@de.adit-jv.com>
CVE-2023-36321