Out-of-bounds read vulnerability caused by improper checking of the option length values in IPv6 headers exists in Cente middleware TCP/IP Network Series, which may allow an unauthenticated attacker to stop the device operations by sending a specially crafted packet.
References
| Link | Resource |
|---|---|
| https://jvn.jp/en/vu/JVNVU94016877/ | Third Party Advisory |
| https://www.cente.jp/obstacle/4960/ | Vendor Advisory |
| https://jvn.jp/en/vu/JVNVU94016877/ | Third Party Advisory |
| https://www.cente.jp/obstacle/4960/ | Vendor Advisory |
Configurations
Configuration 1 (hide)
|
History
No history.
Information
Published : 2024-04-15 11:15
Updated : 2025-06-30 13:34
NVD link : CVE-2024-28894
Mitre link : CVE-2024-28894
CVE.ORG link : CVE-2024-28894
JSON object : View
Products Affected
nxtech
- cente_ipv6_snmpv3
- cente_ipv6
- cente_ipv6_snmpv2
CWE
CWE-125
Out-of-bounds Read
