Intel

AIKIDO-2026-462429

lwip-tcpip.lwip is vulnerable to Buffer Overflow

Buffer OverflowCVE-2020-22284 Published Jul 29, 2026

75

High Risk

This Affects:

C++lwip-tcpip.lwip
0.0.1 - 2.1.2
Fixed in 2.1.3
Are you affected? Scan for Free

TL;DR

lwIP contains a buffer overflow vulnerability in the zepif_linkoutput() function. A remote attacker can send a specially crafted 6LoWPAN packet to trigger a buffer overflow, potentially leading to sensitive information disclosure or other unintended behavior. Updating to a patched version mitigates the issue.

Who does this affect?

You are affected if you are using a version that falls within the vulnerable range.

Background info

lwip-tcpip.lwip is vulnerable to Buffer Overflow in versions 0.0.1 - 2.1.2.

How to fix this

Upgrade the lwip-tcpip.lwip library to the patch version.

Are You Affected?

Connect your repositories to instantly see whether vulnerable or malicious packages exist in your codebase.

Free. No credit card required.

Aikido Platform