An issue was discovered in Connected Vehicle Systems Alliance (COVESA) dlt-daemon through 2.18.8. Due to a faulty DLT file parser, a crafted DLT file that crashes the process can be created. This is due to missing validation checks. There is a heap-based buffer over-read of one byte.
Metrics
Affected Vendors & Products
References
History
Wed, 07 May 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: mitre
Published: 2022-10-24T00:00:00.000Z
Updated: 2025-05-07T14:22:21.841Z
Reserved: 2022-09-05T00:00:00.000Z
Link: CVE-2022-39836

Updated: 2024-08-03T12:07:42.915Z

Status : Modified
Published: 2022-10-25T17:15:56.677
Modified: 2025-05-07T15:15:53.867
Link: CVE-2022-39836

No data.