CVE-2026-75584

ION-DTN before 4.2.1-a.1 contains a denial of service vulnerability that allows unauthenticated remote attackers to crash the ION process by sending a BPv7 bundle with a zero-length payload. The canonicalizePayloadBlock() function in bpsec_util.c passes bundle->payload.length to zco_clone() without validating it against zero, causing a failed CHKZERO assertion that triggers sm_Abort() and terminates the process with SIGABRT before any HMAC verification occurs, requiring no valid key or credential to exploit.
Configurations

No configuration.

History

No history.

Information

Published : 2026-09-10 14:17

Updated : 2026-09-10 15:53


NVD link : CVE-2026-75584

Mitre link : CVE-2026-75584

CVE.ORG link : CVE-2026-75584


JSON object : View

Products Affected

No product.

CWE
CWE-617

Reachable Assertion