Connected Vehicle Systems Alliance (COVESA) up to v2.18.8 was discovered to contain a buffer overflow via the component /shared/dlt_common.c.
{
"binaries": [
{
"binary_name": "dlt-daemon",
"binary_version": "2.18.4-0.1"
},
{
"binary_name": "dlt-tools",
"binary_version": "2.18.4-0.1"
},
{
"binary_name": "libdlt-dev",
"binary_version": "2.18.4-0.1"
},
{
"binary_name": "libdlt-examples",
"binary_version": "2.18.4-0.1"
},
{
"binary_name": "libdlt2",
"binary_version": "2.18.4-0.1"
}
]
}
{
"binaries": [
{
"binary_name": "dlt-daemon",
"binary_version": "2.18.6-2"
},
{
"binary_name": "dlt-tools",
"binary_version": "2.18.6-2"
},
{
"binary_name": "libdlt-dev",
"binary_version": "2.18.6-2"
},
{
"binary_name": "libdlt-examples",
"binary_version": "2.18.6-2"
},
{
"binary_name": "libdlt2",
"binary_version": "2.18.6-2"
}
]
}