CVE-2019-8359: Contiki-NG
Critical severity, CVSS 9.8. EPSS: 2.2% chance of exploitation in the next 30 days.
An issue was discovered in Contiki-NG through 4.3 and Contiki through 3.0. An out of bounds write is present in the data section during 6LoWPAN fragment re-assembly in the face of forged fragment offsets in os/net/ipv6/sicslowpan.c.
Affected products
- Contiki-NG Contiki-NG: up to and including 4.3
- Contiki-OS Contiki: up to and including 3.0
Published 2020-04-23. Last modified 2026-06-17.