216.73.216.197

CVE-2025-11616

· Published 10/10/2025 18:15 · Modified 10/10/2025 18:15

Labels: CVE-2025-11616 2025-10-10CVE-2025-11616CWE-126ff89ba41-3aa1-4d27-914a-91399e9639e5

Essential information

Published
10/10/2025 18:15
Modified
10/10/2025 18:15
Author
Creator
CVSS
5.3 MEDIUM (v3) 5.3 MEDIUM (v4.0)
CISA KEV
No
CWE
CVSS vector

CVSS metrics

Description

A missing validation check in FreeRTOS-Plus-TCP's ICMPv6 packet processing code can lead to an out-of-bounds read when receiving ICMPv6 packets of certain message types which are smaller than the expected size. These issues only affect applications using IPv6. Users should upgrade to the latest version and ensure any forked or derivative code is patched to incorporate the new fixes.

NVD status

Status
Received — CVE has been recently published to the CVE List and has been received by the NVD.
Source
ff89ba41-3aa1-4d27-914a-91399e9639e5
NVD
View on NVD

Affected products (CPE)

ProductCPE
freertos / freertos plus tcp cpe:2.3:a:freertos:freertos_plus_tcp:*:*:*:*:*:*:*:*

References