PT-2025-41582 · Unknown · Freertos-Plus-Tcp

·

CVE-2025-11616

·

Published

2025-10-10

·

Updated

2025-10-11

CVSS v2.0

5.5

Medium

VectorAV:N/AC:L/Au:S/C:P/I:N/A:P
Name of the Vulnerable Software and Affected Versions FreeRTOS-Plus-TCP (affected versions not specified)
Description A missing validation check in the ICMPv6 packet processing code can result in an out-of-bounds read when receiving ICMPv6 packets of specific message types that are smaller than expected. This issue only affects applications utilizing IPv6.
Recommendations Upgrade to the latest version. Ensure any forked or derivative code is patched to incorporate the new fixes.

Exploit

Fix

Buffer Over-read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

BDU:2025-13128
CVE-2025-11616
GHSA-8J9H-XJM9-8J6J

Affected Products

Freertos-Plus-Tcp