#VU49125 Out-of-bounds write in TCP/IP stack - CVE-2020-27337
Published: December 22, 2020 / Updated: December 23, 2020
TCP/IP stack
Placeful Inc.
Description
The vulnerability allows a remote attacker to perform a DoS attack or compromise vulnerable system.
The vulnerability exists due to a boundary error when processing untrusted input within Treck IPv6 component. A remote attacker can send specially crafted packets to the system, trigger out-of-bounds write and crash the system or potentially execute arbitrary code.