CyberRota Analysis
This is a critical severity vulnerability with a CVSS score of 9.8. See the original NVD description below for full technical details.
CVE
CVE-2020-28951
Severity
CRITICAL
CVSS
9.8
EPSS
1.74%
Original NVD Description
libuci in OpenWrt before 18.06.9 and 19.x before 19.07.5 may encounter a use after free when using malicious package names. This is related to uci_parse_package in file.c and uci_strdup in util.c.
Related CVEs
Other vulnerabilities affecting the same vendor(s)