3
I Use This!
Inactive
Analyzed about 2 hours ago. based on code collected about 2 hours ago.
 

Security

Vulnerabilities per Version

Learn more about BDSAs
 
 

Major Versions

1yr
3yr
5yr
10yr
All
click and drag to zoom
 
 
Security Vulnerabilities for Version:
Severities:
Type
Identifier Related Record Severity Date Published Description Versions Affected
CVE-2021-40523 BDSA-2021-2694 High Sep 05, 2021 In Contiki 3.0, Telnet option negotiation is mishandled. During negotiation between a server and a client, the server may fail to give the WILL/WONT or more...
3.0
CVE-2021-38387 BDSA-2021-2678 High Aug 10, 2021 In Contiki 3.0, a Telnet server that silently quits (before disconnection with clients) leads to connected clients entering an infinite loop and waitin more...
3.0
CVE-2021-38386 BDSA-2021-2668 High Aug 10, 2021 In Contiki 3.0, a buffer overflow in the Telnet service allows remote attackers to cause a denial of service because the ls command is mishandled when more...
3.0
CVE-2021-38311 BDSA-2021-2676 High Aug 09, 2021 In Contiki 3.0, potential nonterminating acknowledgment loops exist in the Telnet service. When the negotiated options are already disabled, servers st more...
3.0
CVE-2021-28362 BDSA-2021-0776 High Mar 24, 2021 An issue was discovered in Contiki through 3.0. When sending an ICMPv6 error message because of invalid extension header options in an incoming IPv6 pa more...
3.0, 2.7, 2.6, 2.5, 2.4, 2.3, 2.2.3, 2.2.2, 2.2.1, 2.2
CVE-2020-25112 BDSA-2020-3779 Critical Dec 11, 2020 An issue was discovered in the IPv6 stack in Contiki through 3.0. There are inconsistent checks for IPv6 header extension lengths. This leads to Denial more...
3.0, 2.7, 2.6, 2.5, 2.4, 2.3, 2.2.3, 2.2.2, 2.2.1, 2.2
CVE-2020-25111 BDSA-2020-3793 Critical Dec 11, 2020 An issue was discovered in the IPv6 stack in Contiki through 3.0. There is an insufficient check for the IPv6 header length. This leads to Denial-of-Se more...
3.0, 2.7, 2.6, 2.5, 2.4, 2.3, 2.2.3, 2.2.2, 2.2.1, 2.2
CVE-2020-24336 BDSA-2020-3796 Critical Dec 11, 2020 An issue was discovered in Contiki through 3.0 and Contiki-NG through 4.5. The code for parsing Type A domain name answers in ip64-dns64.c doesn't veri more...
3.0, 2.7, 2.6, 2.5, 2.4, 2.3, 2.2.3, 2.2.2, 2.2.1, 2.2
CVE-2020-13986 BDSA-2020-3767 High Dec 11, 2020 An issue was discovered in Contiki through 3.0. An infinite loop exists in the uIP TCP/IP stack component when handling RPL extension headers of IPv6 n more...
3.0, 2.7, 2.6, 2.5, 2.4, 2.3, 2.2.3, 2.2.2, 2.2.1, 2.2
CVE-2020-13985 BDSA-2020-3768 High Dec 11, 2020 An issue was discovered in Contiki through 3.0. A memory corruption vulnerability exists in the uIP TCP/IP stack component when handling RPL extension more...
3.0, 2.7, 2.6, 2.5, 2.4, 2.3, 2.2.3, 2.2.2, 2.2.1, 2.2