CVE-2017-20283: Nxp Mqx

Medium severity, CVSS 6.5. EPSS: 1.2% chance of exploitation in the next 30 days.

NXP MQX Classic before 5.0 contains an out-of-bounds write vulnerability in the RTCS UDP recvfrom() implementation. Improper enforcement of the application-supplied receive buffer length may allow a crafted UDP packet to overflow the destination buffer, resulting in memory corruption, or denial of service.

Affected products

  • Nxp Mqx: before 5.0 Classic (fixed in 5.0 Classic)

Published 2026-10-08. Last modified 2026-10-08.