CVE-2024-2212

Published
View on NVD ↗
CVSS v3
7.3
HIGH
CVSS v2
N/A
Affected
1
PROJECT

Description

In Eclipse ThreadX before 6.4.0, xQueueCreate() and xQueueCreateSet() functions from the FreeRTOS compatibility API (utility/rtos_compatibility_layers/FreeRTOS/tx_freertos.c) were missing parameter checks. This could lead to integer wraparound, under-allocations and heap buffer overflows.

Eclipse ThreadX is an advanced real-time operating system (RTOS) designed specifically for deeply embedded applications.
GitHubGitHub
3.47K