Product
altran picotcp
18 known vulnerabilities across versions
Vulnerabilities are listed by affected version. Select any CVE for the full briefing and its intelligence graph.
CVE-2020-27635
CVE-2023-35849
CVE-2023-35848
CVE-2023-35847
CVE-2023-35846
CVE-2023-30463
CVE-2021-33304
CVE-2020-24341
CVE-2020-24340
CVE-2020-24339
CVE-2020-24338
CVE-2020-24337
CVE-2020-17445
CVE-2020-17444
CVE-2020-17443
CVE-2020-17442
CVE-2020-17441
CVE-2017-1000210
all versions
In PicoTCP 1.7.0, TCP ISNs are improperly random.
<= 2.1
VirtualSquare picoTCP (aka PicoTCP-NG) through 2.1 does not properly check whether header sizes would result in accessing data out
<= 2.1
VirtualSquare picoTCP (aka PicoTCP-NG) through 2.1 lacks certain size calculations before attempting to set a value of an mss stru
<= 2.1
VirtualSquare picoTCP (aka PicoTCP-NG) through 2.1 does not have an MSS lower bound (e.g., it could be zero).
<= 2.1
VirtualSquare picoTCP (aka PicoTCP-NG) through 2.1 does not check the transport layer length in a frame before performing port fil
<= 1.7.0
Altran picoTCP through 1.7.0 allows memory corruption (and subsequent denial of service) because of an integer overflow in pico_ip
all versions
Double Free vulnerability in virtualsquare picoTCP v1.7.0 and picoTCP-NG v2.1 in modules/pico_fragments.c in function pico_fragmen
<= 1.7.0
An issue was discovered in picoTCP and picoTCP-NG through 1.7.0. The TCP input data processing function in pico_tcp.c does not val
<= 1.7.0
An issue was discovered in picoTCP and picoTCP-NG through 1.7.0. The code that processes DNS responses in pico_mdns_handle_data_as
<= 1.7.0
An issue was discovered in picoTCP and picoTCP-NG through 1.7.0. The DNS domain name record decompression functionality in pico_dn
<= 1.7.0
An issue was discovered in picoTCP through 1.7.0. The DNS domain name record decompression functionality in pico_dns_decompress_na
<= 1.7.0
An issue was discovered in picoTCP and picoTCP-NG through 1.7.0. When an unsupported TCP option with zero length is provided in an
<= 1.7.0
An issue was discovered in picoTCP 1.7.0. The code for processing the IPv6 destination options does not check for a valid length o
<= 1.7.0
An issue was discovered in picoTCP 1.7.0. The routine for processing the next header field (and deducing whether the IPv6 extensio
<= 1.7.0
An issue was discovered in picoTCP 1.7.0. The code for creating an ICMPv6 echo replies doesn't check whether the ICMPv6 echo reque
<= 1.7.0
An issue was discovered in picoTCP 1.7.0. The code for parsing the hop-by-hop IPv6 extension headers does not validate the bounds
<= 1.7.0
An issue was discovered in picoTCP 1.7.0. The code for processing the IPv6 headers does not validate whether the IPv6 payload leng
all versions
picoTCP (versions 1.7.0 - 1.5.0) is vulnerable to stack buffer overflow resulting in code execution or denial of service attack