An issue exists in the IPv6 stack in Contiki up to and including 3.0. There are inconsistent checks for IPv6 header extension lengths. This leads to Denial-of-Service and potential Remote Code Execution via a crafted ICMPv6 echo packet.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
contiki-os contiki-os |