rtl433 21.12 was discovered to contain a stack overflow in the function somfyiohc_decode(). This vulnerability allows attackers to cause a Denial of Service (DoS) via a crafted file.
[ { "signature_type": "Function", "id": "CVE-2022-25050-81d98690", "source": "https://github.com/merbanan/rtl_433/commit/2dad7b9fc67a1d0bfbe520fbd821678b8f8cc7a8", "signature_version": "v1", "target": { "function": "somfy_iohc_decode", "file": "src/devices/somfy_iohc.c" }, "digest": { "function_hash": "311413974228567933812361690653819633866", "length": 1747.0 }, "deprecated": false }, { "signature_type": "Line", "id": "CVE-2022-25050-d49905b2", "source": "https://github.com/merbanan/rtl_433/commit/2dad7b9fc67a1d0bfbe520fbd821678b8f8cc7a8", "signature_version": "v1", "target": { "file": "src/devices/somfy_iohc.c" }, "digest": { "threshold": 0.9, "line_hashes": [ "96687592902302263561796882057406333296", "79610940753016999493581472797794793034", "114221863452420086325921876014808093049", "333827254767139285684406612523667028402", "222550922505389760405054711878898036125", "335589852869607278828860812734750526517", "335509478664289427417864640096968533930", "280181823843085961139624103701464464872", "323246007616678875898837151112077202568", "67761185733847031337629574720875803578", "125036214890072613574997801335121650042" ] }, "deprecated": false } ]