CVE-2020-22284 PUBLISHED

A buffer overflow vulnerability in the zepif_linkoutput() function of Free Software Foundation lwIP git head version and version 2.1.2 allows attackers to access sensitive information via a crafted 6LoWPAN packet.

EPSS 0.40% · 60.7th percentile

Risk Scores

EPSS Score
0.40%
60.7th percentile

Affected Products

VendorProductVersions
Ubuntu:24.04:LTSlwip2.1.3+dfsg1-4, 2.2.0+dfsg1-2, 2.2.0+dfsg1-3
Ubuntu:20.04:LTSlwip0, 2.1.2-3, 2.1.2-5.1
Ubuntu:22.04:LTSlwip2.1.3+dfsg1-1, 2.1.2+dfsg1-9, 2.1.2+dfsg1-8
Ubuntu:25.10lwip0, 2.2.1+dfsg1-1, 2.2.1+dfsg1-2

Timeline

References

Open in Interactive Console →