Description
Multiple memory leaks in openNDS before 11.0.0 allow an unauthenticated attacker on the captive portal network to exhaust all available memory on the device within minutes.
Published: 2026-08-28
Score: 5.3 Medium
EPSS: n/a
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

The vulnerability is a memory leak that affects the openNDS captive portal. An unauthenticated attacker on the captive portal network can repeatedly exercise a code path that leaks memory, eventually exhausting the device's available RAM. The result is a denial of service as the device is forced to either halt or restart, leading to loss of network connectivity for all users.

Affected Systems

The affected product is openNDS from the openNDS project. All releases before version 11.0.0 are vulnerable. Clients running these older builds are susceptible to the memory exhaustion attack.

Risk and Exploitability

The CVSS score of 5.3 indicates moderate severity, while the lack of an EPSS score suggests that exploitation data is not yet available. The vulnerability is not listed in the CISA KEV catalog. The likely attack vector is an unauthenticated user on the captive portal network, requiring network access to the device but no privileged credentials. Because the flaw leaks memory until the system runs out of RAM, it can be triggered within minutes on a typical embedded device, potentially impacting availability in a critical network environment.

Generated by OpenCVE AI on August 28, 2026 at 06:15 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Deploy the latest openNDS release 11.0.0 or newer.
  • If an immediate upgrade is not possible, restart the openNDS service or the device to clear memory.
  • Limit unauthenticated access to the captive portal network using firewall rules or network segmentation to reduce the attack surface.

Generated by OpenCVE AI on August 28, 2026 at 06:15 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Fri, 28 Aug 2026 06:45:00 +0000

Type Values Removed Values Added
Title Memory Exhaustion Vulnerability in openNDS Allows Unauthenticated Attacker to Drain System Memory

Thu, 27 Aug 2026 18:00:00 +0000

Type Values Removed Values Added
Description Multiple memory leaks in openNDS before 11.0.0 allow an unauthenticated attacker on the captive portal network to exhaust all available memory on the device within minutes.
First Time appeared Opennds
Opennds opennds
Weaknesses CWE-401
CPEs cpe:2.3:a:opennds:opennds:*:*:*:*:*:*:*:*
Vendors & Products Opennds
Opennds opennds
References
Metrics cvssV3_1

{'score': 5.3, 'vector': 'CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H'}


cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-08-28T00:03:48.909Z

Reserved: 2026-04-06T10:01:05.608Z

Link: CVE-2026-38819

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-08-28T02:16:21.200

Modified: 2026-08-28T02:16:21.200

Link: CVE-2026-38819

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-28T06:30:18Z

Weaknesses
  • CWE-401

    Missing Release of Memory after Effective Lifetime