CVE-2020-24335
Published
CVSS v3
7.5
HIGH
CVSS v2
5
MEDIUM
Affected
3
PROJECTS
Description
An issue was discovered in uIP through 1.0, as used in Contiki and Contiki-NG. Domain name parsing lacks bounds checks, allowing an attacker to corrupt memory with crafted DNS packets.
The official git repository for Contiki, the open source OS for the Internet of Things