bartek@aws: ~/news
$ whoami
$ AWS Architect · DevOps · Cloud

tag: CVE-2026-7425

show all
Thursday, August 20, 2026

FreeRTOS-Plus-TCP IPv6 Router Advertisement Memory Safety Flaws

FreeRTOS-Plus-TCP versions 4.0.0–4.2.5 and 4.3.0–4.4.0 have critical memory safety bugs (CVE-2026-7425, CVE-2026-7426) in IPv6 Router Advertisement parsing. Attackers on your local network can trigger out-of-bounds read/write without authentication by sending crafted RA packets. You need to update immediately if you're running affected versions.

source: [aws/security-bulletin]