Embedded System Vulnerabilities
A focused list of vulnerabilities relevant to embedded and IoT devices.
| CVE ID | Description | Severity | Published | Type |
|---|---|---|---|---|
| CVE-2020-11153 | u'Out of bound memory access while processing GATT data received due to lack of check of pdu data length and leads to r… | Critical (9.8) | 2020-11-02 | Environment Specific |
| CVE-2020-11141 | u'Buffer over-read issue in Bluetooth estack due to lack of check for invalid length of L2cap configuration request rec… | High (8.1) | 2020-11-02 | Environment Specific |
| CVE-2020-11125 | u'Out of bound access can happen in MHI command process due to lack of check of channel id value received from MHI devi… | High (7.8) | 2020-11-02 | Environment Specific |
| CVE-2020-11114 | u'Bluetooth devices does not properly restrict the L2CAP payload length allowing users in radio range to cause a buffer… | High (8.8) | 2020-11-02 | Environment Specific |
| CVE-2020-27998 | An issue was discovered in FastReport before 2020.4.0. It lacks a ScriptSecurity feature and therefore may mishandle (f… | Critical (9.8) | 2020-10-29 | Environment Specific |