Vulnerabilities
Vulnerable Software
Amazon:  >> Freertos  >> 1.4.2  Security Vulnerabilities
FreeRTOS is a real-time operating system for microcontrollers. FreeRTOS Kernel versions through 10.6.1 do not sufficiently protect against local privilege escalation via Return Oriented Programming techniques should a vulnerability exist that allows code injection and execution. These issues affect ARMv7-M MPU ports, and ARMv8-M ports with Memory Protected Unit (MPU) support enabled (i.e. `configENABLE_MPU` set to 1). These issues are fixed in version 10.6.2 with a new MPU wrapper.
CVSS Score
8.8
EPSS Score
0.0
Published
2024-03-07
The kernel in Amazon Web Services FreeRTOS before 10.4.3 has insufficient bounds checking during management of heap memory.
CVSS Score
9.8
EPSS Score
0.003
Published
2021-05-03
The kernel in Amazon Web Services FreeRTOS before 10.4.3 has an integer overflow in queue.c for queue creation.
CVSS Score
9.8
EPSS Score
0.006
Published
2021-04-22
The kernel in Amazon Web Services FreeRTOS before 10.4.3 has an integer overflow in stream_buffer.c for a stream buffer.
CVSS Score
9.8
EPSS Score
0.006
Published
2021-04-22


Contact Us

Shodan ® - All rights reserved