CVE-2020-13988 PUBLISHED

An issue was discovered in Contiki through 3.0. An Integer Overflow exists in the uIP TCP/IP Stack component when parsing TCP MSS options of IPv4 network packets in uip_process in net/ipv4/uip.c.

EPSS 0.19% · 41.0th percentile

Risk Scores

EPSS Score
0.19%
41.0th percentile

Affected Products

VendorProductVersions
Ubuntu:Pro:16.04:LTSopen-iscsi2.0.873-3ubuntu13, 2.0.873+git0.3b4b4500-13ubuntu3, 2.0.873+git0.3b4b4500-14ubuntu1
Ubuntu:Pro:18.04:LTSopen-iscsi2.0.874-4ubuntu3, 2.0.874-4ubuntu4, 2.0.874-4ubuntu5
Ubuntu:20.04:LTSopen-iscsi0, 2.0.874-7.1ubuntu3, 2.0.874-7.1ubuntu5

Timeline

References

Open in Interactive Console →