{"id":"CVE-2023-28488","details":"client.c in gdhcp in ConnMan through 1.41 could be used by network-adjacent attackers (operating a crafted DHCP server) to cause a stack-based buffer overflow and denial of service, terminating the connman process.","modified":"2026-05-18T05:55:52.164875059Z","published":"2023-04-12T00:00:00Z","related":["openSUSE-SU-2023:0369-1","openSUSE-SU-2023:0370-1","openSUSE-SU-2024:13420-1"],"database_specific":{"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/28xxx/CVE-2023-28488.json","unresolved_ranges":[{"source":"DESCRIPTION","extracted_events":[{"fixed":"1.41"}]}],"cna_assigner":"mitre"},"references":[{"type":"WEB","url":"https://github.com/moehw/poc_exploits/tree/master/CVE-2023-28488"},{"type":"WEB","url":"https://kernel.googlesource.com/pub/scm/network/connman/connman/+/99e2c16ea1cced34a5dc450d76287a1c3e762138"},{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2023/28xxx/CVE-2023-28488.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2023-28488"},{"type":"ADVISORY","url":"https://www.debian.org/security/2023/dsa-5416"},{"type":"ARTICLE","url":"https://lists.debian.org/debian-lts-announce/2023/04/msg00024.html"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://git.kernel.org/pub/scm/network/connman/connman.git","events":[{"introduced":"f0aaa277e1712359701b158e5c43f7cc5c2d46d5"},{"last_affected":"4a27c58ad8b1afd980ebe122ca178c7f659c025e"}],"database_specific":{"cpe":"cpe:2.3:a:intel:connman:*:*:*:*:*:*:*:*","source":"CPE_FIELD","extracted_events":[{"introduced":"0.55"},{"last_affected":"1.41"}]}}],"versions":["1.41","1.40","1.39","1.38","1.37","1.36","1.35","1.34","1.33","1.32","1.31","1.30","1.29","1.28","1.27","1.26","1.25","1.24","1.23","1.22","1.21","1.20","1.19","1.18","1.17","1.16","1.15","1.14","1.13","1.12","1.11","1.10","1.9","1.8","1.7","1.6","1.5","1.4","1.3","1.2","1.1","1.0","0.85","0.84","0.83","0.82","0.81","0.80","0.79","0.78","0.77","0.76","0.75","0.74","0.73","0.72","0.71","0.70","0.69","0.68","0.67","0.66","0.65","0.64","0.63","0.62","0.61","0.60","0.59","0.58","0.57","0.56","0.55"],"database_specific":{"source":"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2023-28488.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}