ZeroHour

CVE-2020-27336

CVSS 3.1
5.3 medium
EPSS
2%p76
Published
()
Modified
Description

An issue was discovered in Treck IPv6 before 6.0.1.68. Improper input validation in the IPv6 component when handling a packet sent by an unauthenticated remote attacker could result in an out-of-bounds read of up to three bytes via network access.

Vendors
treck
Products
ipv6
Weakness
CWE-20, CWE-125
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:N/A:N

In the news