CVE-2020-13582
26.01.2021, 19:15
A denial-of-service vulnerability exists in the HTTP Server functionality of Micrium uC-HTTP 3.01.00. A specially crafted HTTP request can lead to denial of service. An attacker can send an HTTP request to trigger this vulnerability.Enginsight
Vendor | Product | Version |
---|---|---|
silabs | micrium_uc-http | 3.01.00 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
- CWE-690 - Unchecked Return Value to NULL Pointer DereferenceThe product does not check for an error after calling a function that can return with a NULL pointer if the function fails, which leads to a resultant NULL pointer dereference.
- CWE-476 - NULL Pointer DereferenceA NULL pointer dereference occurs when the application dereferences a pointer that it expects to be valid, but is NULL, typically causing a crash or exit.