Lucene search

K
cvelistMitreCVELIST:CVE-2018-20578
HistoryOct 03, 2022 - 4:22 p.m.

CVE-2018-20578

2022-10-0316:22:05
mitre
www.cve.org
nuttx
netlib_parsehttpurl
http 3xx
response

0.001 Low

EPSS

Percentile

37.9%

An issue was discovered in NuttX before 7.27. The function netlib_parsehttpurl() in apps/netutils/netlib/netlib_parsehttpurl.c mishandles URLs longer than hostlen bytes (in the webclient, this is set by default to 40), leading to an Infinite Loop. The attack vector is the Location header of an HTTP 3xx response.

0.001 Low

EPSS

Percentile

37.9%

Related for CVELIST:CVE-2018-20578