Impact
An out‑of‑bounds write occurs in the lwIP TCP/IP Stack MQTT client, a flaw that allows a remote adversary to overwrite memory beyond an expected boundary. Exploiting this vulnerability can grant the attacker arbitrary code execution, effectively enabling complete takeover of the affected device and compromising its confidentiality, integrity, and availability.
Affected Systems
The vulnerability resides in the lwIP TCP/IP Stack MQTT, a networking component used in various embedded and industrial control systems. The listing does not provide explicit version ranges, but any instance employing lwIP prior to the fix commit is susceptible.
Risk and Exploitability
The CVSS score of 9.3 indicates a critical severity, and the EPSS score is currently not available, making it difficult to gauge real‑world exploitation momentum. The flaw is not listed in the CISA KEV catalog, suggesting no confirmed large‑scale exploits yet. Based on the description, the likely attack path involves an attacker sending a maliciously crafted MQTT packet to a device that uses the vulnerable lwIP stack, triggering the out‑of‑bounds write and thus achieving code execution.
OpenCVE Enrichment