ZeroHour

CVE-2020-10723

CVSS 3.1
6.7 medium
EPSS
<1%p31
Published
()
Modified
Description

A memory corruption issue was found in DPDK versions 17.05 and above. This flaw is caused by an integer truncation on the index of a payload. Under certain circumstances, the index (a UInt) is copied and truncated into a uint16, which can lead to out of bound indexing and possible memory corruption.

Vendors
dpdkcanonicalfedoraprojectopensuseoracle
Products
data plane development kit, ubuntu linux, fedora, leap, communications session border controller, enterprise communications broker
Weakness
CWE-190
Vector
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.