CVE-2018-1000537

Marlin Firmware Marlin version 1.1.x and earlier contains a Buffer Overflow vulnerability in cardreader.cpp (Depending on branch/version) that can result in Arbitrary code execution. This attack appear to be exploitable via Crafted G-Code instruction/file is sent to the printer.
Configurations

Configuration 1 (hide)

cpe:2.3:o:marlinfw:marlin_firmware:*:*:*:*:*:*:*:*

History

21 Nov 2024, 03:40

Type Values Removed Values Added
References () http://forums.reprap.org/read.php?415%2C823246 - () http://forums.reprap.org/read.php?415%2C823246 -
References () https://github.com/MarlinFirmware/Marlin/pull/10925 - Third Party Advisory () https://github.com/MarlinFirmware/Marlin/pull/10925 - Third Party Advisory

07 Nov 2023, 02:51

Type Values Removed Values Added
References
  • {'url': 'http://forums.reprap.org/read.php?415,823246', 'name': 'http://forums.reprap.org/read.php?415,823246', 'tags': ['Third Party Advisory'], 'refsource': 'MISC'}
  • () http://forums.reprap.org/read.php?415%2C823246 -

Information

Published : 2018-06-26 16:29

Updated : 2024-11-21 03:40


NVD link : CVE-2018-1000537

Mitre link : CVE-2018-1000537

CVE.ORG link : CVE-2018-1000537


JSON object : View

Products Affected

marlinfw

  • marlin_firmware
CWE
CWE-119

Improper Restriction of Operations within the Bounds of a Memory Buffer