CVE-2020-29394
30.11.2020, 19:15
A buffer overflow in the dlt_filter_load function in dlt_common.c from dlt-daemon through 2.18.5 (GENIVI Diagnostic Log and Trace) allows arbitrary code execution because fscanf is misused (no limit on the number of characters to be read in the format argument).Enginsight
| Vendor | Product | Version |
|---|---|---|
| genivi | diagnostic_log_and_trace | 𝑥 ≤ 2.18.5 |
| debian | debian_linux | 10.0 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Common Weakness Enumeration
References