#VU49124 Heap-based buffer overflow in TCP/IP stack - CVE-2020-25066
Published: December 22, 2020 / Updated: December 23, 2020
TCP/IP stack
Placeful Inc.
Description
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to a boundary error in Treck HTTP Server component. A remote attacker can pass specially crafted request to the server, trigger heap-based buffer overflow and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.