CVE-2020-13987: Open-Iscsi Project Open-Iscsi
High severity, CVSS 7.5. EPSS: 3.3% chance of exploitation in the next 30 days.
An issue was discovered in Contiki through 3.0. An Out-of-Bounds Read vulnerability exists in the uIP TCP/IP Stack component when calculating the checksums for IP packets in upper_layer_chksum in net/ipv4/uip.c.
Affected products
- Open-Iscsi Project Open-Iscsi: up to and including 2.1.12
- Siemens Sentron 3va COM100 Firmware: before 4.4.1 (fixed in 4.4.1)
- Siemens Sentron 3va COM800 Firmware: before 4.4.1 (fixed in 4.4.1)
- Siemens Sentron PAC3200 Firmware: before 2.4.7 (fixed in 2.4.7)
- Siemens Sentron PAC4200 Firmware: before 2.3.0 (fixed in 2.3.0)
- Uip Project Uip: up to and including 1.0
Published 2020-12-11. Last modified 2026-06-17.