Vulnerability index

Browse CVEs

54 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Contiki Ng HIGH 8.1
CVE-2021-32771

Contiki-NG is an open-source, cross-platform operating system for IoT devices. In affected versions it is possible to cause a buffer overflow when co…

Fix: 4.8+
Fix from $1,950 2022-08-04
Contiki Ng HIGH 8.8
CVE-2020-12140

A buffer overflow in os/net/mac/ble/ble-l2cap.c in the BLE stack in Contiki-NG 4.4 and earlier allows an attacker to execute arbitrary code via malic…

Fix: after 4.4
Fix from $1,950 2021-12-07
Contiki Ng CRITICAL 9.1
CVE-2020-12141

An out-of-bounds read in the SNMP stack in Contiki-NG 4.4 and earlier allows an attacker to cause a denial of service and potentially disclose inform…

Fix: after 4.4
Fix from $2,300 2021-10-19
Contiki Ng CRITICAL 9.8
CVE-2021-21280

Contiki-NG is an open-source, cross-platform operating system for internet of things devices. It is possible to cause an out-of-bounds write in versi…

Fix: 4.6+
Fix from $2,300 2021-06-18
Contiki Ng CRITICAL 9.8
CVE-2021-21281

Contiki-NG is an open-source, cross-platform operating system for internet of things devices. A buffer overflow vulnerability exists in Contiki-NG ve…

Fix: 4.6+
Fix from $2,300 2021-06-18
Contiki Ng CRITICAL 9.1
CVE-2021-21410

Contiki-NG is an open-source, cross-platform operating system for Next-Generation IoT devices. An out-of-bounds read can be triggered by 6LoWPAN pack…

Fix: after 4.6
Fix from $2,300 2021-06-18
Contiki Ng HIGH 7.5
CVE-2021-21257

Contiki-NG is an open-source, cross-platform operating system for internet of things devices. The RPL-Classic and RPL-Lite implementations in the Con…

Fix: 4.6+
Fix from $1,950 2021-06-18
Contiki Ng HIGH 7.5
CVE-2021-21279

Contiki-NG is an open-source, cross-platform operating system for internet of things devices. In verions prior to 4.6, an attacker can perform a deni…

Fix: 4.6+
Fix from $1,950 2021-06-18
Contiki Ng CRITICAL 9.8
CVE-2021-21282

Contiki-NG is an open-source, cross-platform operating system for internet of things devices. In versions prior to 4.5, buffer overflow can be trigge…

Fix: 4.5+
Fix from $2,300 2021-06-18
Contiki Ng CRITICAL 9.8
CVE-2020-24336EPSS 59%

An issue was discovered in Contiki through 3.0 and Contiki-NG through 4.5. The code for parsing Type A domain name answers in ip64-dns64.c doesn't ve…

Fix: after 4.5
Fix from $2,300 2020-12-11
Contiki Ng HIGH 7.5
CVE-2020-13988

An issue was discovered in Contiki through 3.0. An Integer Overflow exists in the uIP TCP/IP Stack component when parsing TCP MSS options of IPv4 net…

Fix: after 3.0
Fix from $1,950 2020-12-11
Contiki Ng CRITICAL 9.8
CVE-2020-14934

Buffer overflows were discovered in Contiki-NG 4.4 through 4.5, in the SNMP agent. The function parsing the received SNMP request does not verify the…

Fix: after 4.5
Fix from $2,300 2020-08-18
Contiki Ng CRITICAL 9.8
CVE-2020-14935

Buffer overflows were discovered in Contiki-NG 4.4 through 4.5, in the SNMP bulk get request response encoding function. The function parsing the rec…

Fix: after 4.5
Fix from $2,300 2020-08-18
Contiki Ng CRITICAL 9.8
CVE-2020-14936

Buffer overflows were discovered in Contiki-NG 4.4 through 4.5, in the SNMP agent. Functions parsing the OIDs in SNMP requests lack sufficient alloca…

Fix: after 4.5
Fix from $2,300 2020-08-18
Contiki Ng CRITICAL 9.1
CVE-2020-14937

Memory access out of buffer boundaries issues was discovered in Contiki-NG 4.4 through 4.5, in the SNMP BER encoder/decoder. The length of provided i…

Fix: after 4.5
Fix from $2,300 2020-08-18
Contiki Ng CRITICAL 9.8
CVE-2019-8359

An issue was discovered in Contiki-NG through 4.3 and Contiki through 3.0. An out of bounds write is present in the data section during 6LoWPAN fragm…

Fix: after 4.3
Fix from $2,300 2020-04-23
Contiki Ng HIGH 7.5
CVE-2019-9183

An issue was discovered in Contiki-NG through 4.3 and Contiki through 3.0. A buffer overflow is present due to an integer underflow during 6LoWPAN fr…

Fix: after 4.3
Fix from $1,950 2020-04-23
Contiki Ng CRITICAL 10.0
CVE-2018-19417EPSS 6%

An issue was discovered in the MQTT server in Contiki-NG before 4.2. The function parse_publish_vhdr() that parses MQTT PUBLISH messages with a varia…

Fix: 4.2+
Fix from $2,300 2018-11-21
Contiki Ng CRITICAL 9.8
CVE-2018-1000804EPSS 6%

contiki-ng version 4 contains a Buffer Overflow vulnerability in AQL (Antelope Query Language) database engine that can result in Attacker can perfor…

Patch available
Fix from $2,300 2018-10-08
Contiki Ng. HIGH 7.8
CVE-2018-16663

An issue was discovered in Contiki-NG through 4.1. There is a stack-based buffer overflow in parse_relations in os/storage/antelope/aql-parser.c whil…

Fix: after 4.1
Fix from $1,950 2018-09-07
Contiki Ng. HIGH 7.8
CVE-2018-16666

An issue was discovered in Contiki-NG through 4.1. There is a stack-based buffer overflow in next_string in os/storage/antelope/aql-lexer.c while par…

Fix: after 4.1
Fix from $1,950 2018-09-07
Contiki Ng. HIGH 7.0
CVE-2018-16664

An issue was discovered in Contiki-NG through 4.1. There is a buffer overflow in lvm_set_type in os/storage/antelope/lvm.c while parsing AQL (lvm_set…

Fix: after 4.1
Fix from $1,950 2018-09-07
Contiki Ng. HIGH 7.0
CVE-2018-16667

An issue was discovered in Contiki-NG through 4.1. There is a buffer over-read in lookup in os/storage/antelope/lvm.c while parsing AQL (lvm_register…

Fix: after 4.1
Fix from $1,950 2018-09-07
Contiki Ng. MEDIUM 6.1
CVE-2018-16665

An issue was discovered in Contiki-NG through 4.1. There is a buffer overflow while parsing AQL in lvm_shift_for_operator in os/storage/antelope/lvm.…

Fix: after 4.1
Fix from $1,600 2018-09-07