The daemon in GENIVI diagnostic log and trace (DLT), is vulnerable to a heap-based buffer overflow that could allow an attacker to remotely execute arbitrary code on the DLT-Daemon (versions prior to 2.18.6).
{
"binaries": [
{
"binary_version": "2.18.4-0.1",
"binary_name": "dlt-daemon"
},
{
"binary_version": "2.18.4-0.1",
"binary_name": "dlt-tools"
},
{
"binary_version": "2.18.4-0.1",
"binary_name": "libdlt-dev"
},
{
"binary_version": "2.18.4-0.1",
"binary_name": "libdlt-examples"
},
{
"binary_version": "2.18.4-0.1",
"binary_name": "libdlt2"
}
]
}