NA

CVE-2024-2212

Published: 26/03/2024 Updated: 26/03/2024

Vulnerability Summary

In Eclipse ThreadX prior to 6.4.0, xQueueCreate() and xQueueCreateSet() functions from the FreeRTOS compatibility API (utility/rtos_compatibility_layers/FreeRTOS/tx_freertos.c) were missing parameter checks. This could lead to integer wraparound, under-allocations and heap buffer overflows.