CVE-2022-1841 Information

Description

In subsys/net/ip/tcp.c function tcp_flags when the incoming parameter flags is ECN or CWR the buf will out-of-bounds write a byte zero.

Reference

http://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-5c3j-p8cr-2pgh

Share on: