HomeDefectsLIN1022-3476
Fixed

LIN1022-3476 : Security Advisory - dlt-daemon - CVE-2023-26257

Created: Feb 27, 2023    Updated: Jun 13, 2023
Resolved Date: May 30, 2023
Found In Version: 10.22.33.1
Fix Version: 10.22.33.10
Severity: Standard
Applicable for: Wind River Linux LTS 22
Component/s: Userspace

Description

An issue was discovered in the Connected Vehicle Systems Alliance (COVESA; formerly GENIVI) dlt-daemon through 2.18.8. Dynamic memory is not released after it is allocated in dlt-control-common.c.

CREATE(Triage):(User=admin) CVE-2023-26257 (https://nvd.nist.gov/vuln/detail/CVE-2023-26257)

CVEs