CVE-2018-16667: Contiki-NG Contiki-Ng.

High severity, CVSS 7.0. EPSS: 0.3% chance of exploitation in the next 30 days.

An issue was discovered in Contiki-NG through 4.1. There is a buffer over-read in lookup in os/storage/antelope/lvm.c while parsing AQL (lvm_register_variable, lvm_set_variable_value, create_intersection, create_union).

Affected products

Published 2018-09-07. Last modified 2026-06-17.