CVE-2026-75584

    Dashboard / Vulnerabilities / CVE-2026-75584

    CVE-2026-75584

    Published: 10 Sept 2026Last Modified: 11 Sept 2026

    Summary: ION-DTN < 4.2.1-a.1 Denial of Service via canonicalizePayloadBlock() Assertion

    Details: ION-DTN before 4.2.1-a.1 contains a denial of service vulnerability that allows unauthenticated remote attackers to crash the ION process by sending a BPv7 bundle with a zero-length payload. The canonicalizePayloadBlock() function in bpsec_util.c passes bundle->payload.length to zco_clone() without validating it against zero, causing a failed CHKZERO assertion that triggers sm_Abort() and terminates the process with SIGABRT before any HMAC verification occurs, requiring no valid key or credential to exploit.

    Affected packages

    Package

    Name:

    Purl:

    Affected ranges

    Type: GIT

    Events:

    Introduced- 0
    Fixed -None

    Affected versions

    ion-open-source-4.2.0
    ion-open-source-4.2.0-a.2
    ion-open-source-4.2.0-a.1

    Common Vulnerability Scoring System

    Attack Vector
    Network
    Adjacent
    Local
    Physical
    Privileges Required
    None
    Low
    High
    User Interaction
    None
    Required
    Scope
    Unchanged
    Changed
    Confidentiality
    None
    Low
    High
    Integrity
    None
    Low
    High
    Availability
    None
    Low
    High
    CVE-2026-75584 | CVE-DB