454
VMScore

CVE-2020-1939

Published: 12/05/2020 Updated: 19/05/2020
CVSS v2 Base Score: 5.1 | Impact Score: 6.4 | Exploitability Score: 4.9
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 454
Vector: AV:N/AC:H/Au:N/C:P/I:P/A:P

Vulnerability Summary

The Apache NuttX (Incubating) project provides an optional separate "apps" repository which contains various optional components and example programs. One of these, ftpd, had a NULL pointer dereference bug. The NuttX RTOS itself is not affected. Users of the optional apps repository are affected only if they have enabled ftpd. Versions 6.15 to 8.2 are affected.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

apache nuttx

Mailing Lists

CVE-2020-1939: Apache NuttX optional/example ftpd program NULL pointer bug Severity: Important Vendor: Apache NuttX (Incubating) Versions Affected: 615 to 82 (all pre-date NuttX joining the Apacheorg Incubator) Description: The Apache NuttX (Incubating) project provides an optional separate "apps" repository which contains various optional c ...