Amazon Web Services (AWS) FreeRTOS attraverso 1.3.1 ha un puntatore non inizializzato libera in SOCKETS_SetSockOpt. |
https://github.com/aws/amazon-freertos/blob/v1.3.2/CHANGELOG.md https://blog.zimperium.com/freertos-tcpip-stack-vulnerabilities-details/ https://blog.zimperium.com/freertos-tcpip-stack-vulnerabilities-put-wide-range-devices-risk-compromise-smart-homes-critical-infrastructure-systems/ https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2018-16522 |
Vulnerabilità: CVE-2018-16522
