Multiple Vulnerabilities in OpenThread Could Lead to Denial of Service
CVE-2025-36939
10CRITICAL
What is CVE-2025-36939?
OpenThread has multiple vulnerabilities related to the handling of MLE packets. An authenticated attacker on the same Thread network could exploit these flaws by sending specially crafted packets, potentially resulting in a denial of service. The vulnerabilities include assertion failures that can be triggered intentionally as well as a stack-based buffer overflow, which could further compromise the stability of the network.
Affected Version(s)
Nest 3.78.518349