CNNVD-202510-886 Information
CNNVD ID
CNNVD-202510-886
Related CVE
- CNNVD Published: 2025-10-07
Description (Chinese)
Interplanetary Overlay Network是NASA Jet Propulsion Laboratory开源的一个延迟容忍网络的实现。 Interplanetary Overlay Network 4.1.3s版本存在安全漏洞,该漏洞源于处理畸形扩展块时未正确转换无符号整数到有符号整数,可能导致拒绝服务攻击。
Description (English)
Interplanetary Overlay Network is the realization of a delayed tolerance network that is an open source for NASA Jet Production Laboratory. There is a security loophole in the version of Interplanetary Overlay Network 4.1.3s, which stems from the incorrect conversion of unsigned integers to symbolized integers when dealing with abnormal extensions, which could lead to a denial of service attack.
Hazard Level
Medium
Vulnerability Type
其他
Affected Vendor
NASA Jet Propulsion Laboratory
Published
2025-10-07
Last Modified
2026-02-24
References
https://github.com/nasa-jpl/ION-DTN/blob/ion-open-source-4.1.3s/bpv7/library/bei.c#L758-L769 https://github.com/nasa-jpl/ION-DTN/security/advisories/GHSA-xm96-38vj-h28h https://access.redhat.com/security/cve/cve-2025-61910
Patch
https://github.com/nasa-jpl/ION-DTN/tags
Share on: