CVE-2017-8289: Riot Project Riot
Critical severity, CVSS 9.8. EPSS: 1.8% chance of exploitation in the next 30 days.
Stack-based buffer overflow in the ipv6_addr_from_str function in sys/net/network_layer/ipv6/addr/ipv6_addr_from_str.c in RIOT prior to 2017-04-25 allows local attackers, and potentially remote attackers, to cause a denial of service or possibly have unspecified other impact via a malformed IPv6 address.
Affected products
- Riot Project Riot: up to and including 2017.01
Published 2017-04-27. Last modified 2026-06-17.