PT-2025-41582 · Unknown · Freertos-Plus-Tcp

Ivan Gotovchits

·

Published

2025-10-10

·

Updated

2025-10-11

·

CVE-2025-11616

CVSS v2.0

5.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:N/A:P
Name of the Vulnerable Software and Affected Versions FreeRTOS-Plus-TCP (affected versions not specified)
Description A missing validation check in the ICMPv6 packet processing code can result in an out-of-bounds read when receiving ICMPv6 packets of specific message types that are smaller than expected. This issue only affects applications utilizing IPv6.
Recommendations Upgrade to the latest version. Ensure any forked or derivative code is patched to incorporate the new fixes.

Fix

Buffer Over-read

Weakness Enumeration

Related Identifiers

BDU:2025-13128
CVE-2025-11616
GHSA-8J9H-XJM9-8J6J

Affected Products

Freertos-Plus-Tcp