contiki-ng
Operating Systemsoss-project
Top products
Latest CVEs
The 15 most recently published vulnerabilities affecting contiki-ng.
- CVE-2026-5857Contiki-NG MQTT Client Out-of-Bounds Write in PUBLISH Topic Parser via Persistent State Between TCP Segments8.1
- CVE-2026-5856Contiki-NG DNS/mDNS Resolver Out-of-Bounds Read via Unchecked skip_name Traversal Before Transaction-ID Validation7.1
- CVE-2026-5855Contiki-NG LwM2M TLV Parser Out-of-Bounds Read via Unchecked Buffer Length in lwm2m_tlv_read7.5
- CVE-2023-29001Uncontrolled recursion due to insufficient validation of the IPv6 source routing header in Contiki-NG7.5
- CVE-2024-41125Out-of-bounds read in SNMP when decoding a string in Contiki-NG8.3
- CVE-2024-41126Out-of-bounds read when decoding SNMP messages in Contiki-NG8.3
- CVE-2024-47181Unaligned memory access in RPL option processing in Contiki-NG7.5
- CVE-2023-50926Unvalidated DIO prefix info length in RPL-Lite in Contiki-NG7.5
- CVE-2023-50927Insufficient boundary checks for DIO and DAO messages in RPL-Lite in Contiki-NG8.6
- CVE-2023-48229Out-of-bounds write in the radio driver for Contiki-NG nRF platforms7.0
- CVE-2021-42146An issue was discovered in Contiki-NG tinyDTLS through master branch 53a0d97. DTLS servers allow remote attackers to reuse the same epoch number within two times the TCP maximum segment lifetime, w...7.5
- CVE-2021-42143An issue was discovered in Contiki-NG tinyDTLS through master branch 53a0d97. An infinite loop bug exists during the handling of a ClientHello handshake message. This bug allows remote attackers to...9.1
- CVE-2021-42145An assertion failure discovered in in check_certificate_request() in Contiki-NG tinyDTLS through master branch 53a0d97 allows attackers to cause a denial of service.7.5
- CVE-2021-42144Buffer over-read vulnerability in Contiki-NG tinyDTLS through master branch 53a0d97 allows attackers obtain sensitive information via crafted input to dtls_ccm_decrypt_message().9.8
- CVE-2021-42147Buffer over-read vulnerability in the dtls_sha256_update function in Contiki-NG tinyDTLS through master branch 53a0d97 allows remote attackers to cause a denial of service via crafted data packet.9.1