CVE-2020-22283 PUBLISHED

A buffer overflow vulnerability in the icmp6_send_response_with_addrs_and_netif() function of Free Software Foundation lwIP version git head allows attackers to access sensitive information via a crafted ICMPv6 packet.

EPSS 0.29% · 51.9th percentile

Risk Scores

EPSS Score
0.29%
51.9th percentile

Affected Products

VendorProductVersions
Ubuntu:22.04:LTSlwip2.1.3+dfsg1-1, 0, 2.1.2+dfsg1-8
Ubuntu:25.10lwip2.2.1+dfsg1-1, 2.2.1+dfsg1-2, 0
Ubuntu:20.04:LTSlwip0, 2.1.2-3, 2.1.2-5.1
Ubuntu:24.04:LTSlwip2.2.0+dfsg1-2, 2.2.0+dfsg1-3, 2.2.0+dfsg1-4

Timeline

References

Open in Interactive Console →