Contiki-NG是Contiki-NG开源的一个适用于物联网中资源受限设备的操作系统。 Contiki-NG存在缓冲区错误漏洞,该漏洞源于向运行启用了 SNMP 的 Contiki-NG 操作系统的设备发送数据包时,可能会触发 1 字节的越界读取。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| contiki-ng | contiki-ng | <= 4.9 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
| CVE-2024-41126 | 8.4 HIGH | Out-of-bounds read when decoding SNMP messages in Contiki-NG |
| CVE-2024-47181 | 7.5 HIGH | Unaligned memory access in RPL option processing in Contiki-NG |
| CVE-2023-29001 | Uncontrolled recursion due to insufficient validation of the IPv6 source routing header in |
No comments yet