7.5
CVSSv3

CVE-2022-31291

Published: 16/06/2022 Updated: 03/02/2023
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:N/I:N/A:P

Vulnerability Summary

An issue in dlt_config_file_parser.c of dlt-daemon v2.18.8 allows malicious users to cause a double free via crafted TCP packets.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

genivi diagnostic log and trace 2.18.8

debian debian linux 10.0

Vendor Advisories

Debian Bug report logs - #1014534 dlt-daemon: CVE-2022-31291 Package: src:dlt-daemon; Maintainer for src:dlt-daemon is Aigars Mahinovs <aigarius@debianorg>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Thu, 7 Jul 2022 15:48:02 UTC Severity: grave Tags: security Reply or subscribe to this bug Toggle ...