libuci in OpenWrt before 18.06.9 and 19.x before 19.07.5 may encounter a use after free when using malicious package names. This is related to uci_parse_package in file.c and uci_strdup in util.c.
References
Link | Resource |
---|---|
https://git.openwrt.org/?p=project/uci.git;a=commit;h=a3e650911f5e6f67dcff09974df3775dfd615da6 | Patch Vendor Advisory |
https://git.openwrt.org/?p=openwrt/openwrt.git;a=log;h=refs/tags/v18.06.9 | Patch Vendor Advisory |
https://git.openwrt.org/?p=openwrt/openwrt.git;a=commit;h=5625f5bc36954d644cb80adf8de47854c65d91c3 | Patch Vendor Advisory |
Configurations
Configuration 1 (hide)
|
Information
Published : 2020-11-19 11:15
Updated : 2020-12-02 10:57
NVD link : CVE-2020-28951
Mitre link : CVE-2020-28951
JSON object : View
CWE
CWE-416
Use After Free
Products Affected
openwrt
- openwrt