CVE-2018-6480

HIGH

CCN-lite 2 - Memory Corruption

Title source: llm
STIX 2.1

Description

A type confusion issue was discovered in CCN-lite 2, leading to a memory access violation and a failure of the nonce feature (which, for example, helped with loop prevention). ccnl_fwd_handleInterest assumes that the union member s is of type ccnl_pktdetail_ndntlv_s. However, if the type is in fact struct ccnl_pktdetail_ccntlv_s or struct ccnl_pktdetail_iottlv_s, the memory at that point is either uninitialised or points to data that is not a nonce, which renders the code using the local variable nonce pointless. A later nonce check is insufficient.

Scores

CVSS v3 8.8
EPSS 0.0038
EPSS Percentile 59.2%
Attack Vector NETWORK
CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Details

CWE
CWE-704
Status published
Products (1)
ccn-lite/ccn-lite 2.0.0
Published Jan 31, 2018
Tracked Since Feb 18, 2026