CVE-2017-12463: Ccn-Lite

High severity, CVSS 7.5. EPSS: 1.4% chance of exploitation in the next 30 days.

Memory leak in the ccnl_app_RX function in ccnl-uapi.c in CCN-lite before 2.00 allows context-dependent attackers to cause a denial of service (memory consumption) via vectors involving an envelope_s structure pointer when the packet format is unknown.

Affected products

  • Ccn-Lite Ccn-Lite: before 2.0.0 (fixed in 2.0.0)

Published 2018-02-07. Last modified 2026-06-17.