← All CVEs

CVE-2018-8531

high · 8.8

A remote code execution vulnerability exists in the way that Azure IoT Hub Device Client SDK using MQTT protocol accesses objects in memory, aka "Azure IoT Device Client SDK Memory Corruption Vulnerability." This affects Hub Device Client SDK, Azure IoT Edge.

8.8
CVSS
15.1%
EPSS (exploit prob.)
97th
EPSS percentile
2018-10-10
Published

CVSS:3.0/AV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

Weaknesses

CWE-787

Affected products

VendorProductAffected versions
microsoftazure_internet_of_things_edgeall versions
microsoftcsharp_software_development_kitall versions

Check a specific version with /api/v1/cve/match.

References

Query this programmatically:

curl https://evil-db.io/api/v1/cve/CVE-2018-8531