CVE-2024-23911

Out-of-bounds read vulnerability caused by improper checking of the option length values in IPv6 NDP packets exists in Cente middleware TCP/IP Network Series, which may allow an unauthenticated attacker to stop the device operations by sending a specially crafted packet.
References
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:nxtech:cente_ipv6:*:*:*:*:*:*:*:*
cpe:2.3:a:nxtech:cente_ipv6_snmpv2:*:*:*:*:*:*:*:*
cpe:2.3:a:nxtech:cente_ipv6_snmpv3:*:*:*:*:*:*:*:*

History

30 Jun 2025, 13:32

Type Values Removed Values Added
First Time Nxtech
Nxtech cente Ipv6 Snmpv2
Nxtech cente Ipv6
Nxtech cente Ipv6 Snmpv3
CPE cpe:2.3:a:nxtech:cente_ipv6:*:*:*:*:*:*:*:*
cpe:2.3:a:nxtech:cente_ipv6_snmpv3:*:*:*:*:*:*:*:*
cpe:2.3:a:nxtech:cente_ipv6_snmpv2:*:*:*:*:*:*:*:*
References () https://jvn.jp/en/vu/JVNVU94016877/ - () https://jvn.jp/en/vu/JVNVU94016877/ - Third Party Advisory
References () https://www.cente.jp/obstacle/4960/ - () https://www.cente.jp/obstacle/4960/ - Vendor Advisory

21 Nov 2024, 08:58

Type Values Removed Values Added
References () https://jvn.jp/en/vu/JVNVU94016877/ - () https://jvn.jp/en/vu/JVNVU94016877/ -
References () https://www.cente.jp/obstacle/4960/ - () https://www.cente.jp/obstacle/4960/ -

03 Jul 2024, 01:48

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
Summary
  • (es) Existe una vulnerabilidad de lectura fuera de los límites causada por una verificación incorrecta de los valores de longitud de las opciones en los paquetes IPv6 NDP en la serie de redes TCP/IP del middleware Cente, lo que puede permitir que un atacante no autenticado detenga las operaciones del dispositivo enviando un paquete especialmente manipulado.
CWE CWE-125

15 Apr 2024, 11:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-04-15 11:15

Updated : 2025-06-30 13:32


NVD link : CVE-2024-23911

Mitre link : CVE-2024-23911

CVE.ORG link : CVE-2024-23911


JSON object : View

Products Affected

nxtech

  • cente_ipv6_snmpv3
  • cente_ipv6_snmpv2
  • cente_ipv6
CWE
CWE-125

Out-of-bounds Read