CNNVD-202510-886 Information

CNNVD ID

CNNVD-202510-886

CVE-2025-61910

  • CNNVD Published: 2025-10-07

Description (Chinese)

Interplanetary Overlay Network是NASA Jet Propulsion Laboratory开源的一个延迟容忍网络的实现。 Interplanetary Overlay Network 4.1.3s版本存在安全漏洞,该漏洞源于处理畸形扩展块时未正确转换无符号整数到有符号整数,可能导致拒绝服务攻击。

Description (English)

Interplanetary Overlay Network is the realization of a delayed tolerance network that is an open source for NASA Jet Production Laboratory. There is a security loophole in the version of Interplanetary Overlay Network 4.1.3s, which stems from the incorrect conversion of unsigned integers to symbolized integers when dealing with abnormal extensions, which could lead to a denial of service attack.

Hazard Level

Medium

Vulnerability Type

其他

Affected Vendor

NASA Jet Propulsion Laboratory

Published

2025-10-07

Last Modified

2026-02-24

References

https://github.com/nasa-jpl/ION-DTN/blob/ion-open-source-4.1.3s/bpv7/library/bei.c#L758-L769 https://github.com/nasa-jpl/ION-DTN/security/advisories/GHSA-xm96-38vj-h28h https://access.redhat.com/security/cve/cve-2025-61910

Patch

https://github.com/nasa-jpl/ION-DTN/tags

Share on: