A stack-based overflow vulnerability exists in the Microchip Advanced Software Framework (ASF) implementation of the tin

Post Reply
Shane1145
Posts: 1624
Joined: Wed Sep 25, 2024 2:31 pm

A stack-based overflow vulnerability exists in the Microchip Advanced Software Framework (ASF) implementation of the tin

Post by Shane1145 »

A stack-based overflow vulnerability exists in the tinydhcp server in the Microchip Advanced Software Framework (ASF) that can lead to remote code execution.An implementation of DHCP in ASF fails input validation, thereby creating conditions for a stack-based overflow. The software is no longer supported by the vendor. Because this vulnerability is in IoT-centric code, it is likely to surface in many places in the wild.

https://www.kb.cert.org/vuls/id/138043
Post Reply