CVE-2026-84484 Details
Description
ION-DTN versions before 4.2.0 contain an out-of-bounds read vulnerability in the decodeSdnv function that allows unauthenticated remote attackers to read memory by sending truncated SDNV values. Attackers can send a UDP datagram to the LTP link service input port with a truncated SDNV to trigger reads up to nine bytes past buffer boundaries and underflow byte counters.
A pre-authentication out-of-bounds read vulnerability has been identified in ION-DTN versions prior to 4.2.0. The issue resides in the SDNV (Self-Delimiting Numeric Value) decoding function, where the lack of proper boundary checks allows unauthenticated remote attackers to read memory. This is achieved by sending truncated SDNV values within protocol packets, such as those used by the LTP (Liberal Transfer Protocol) link service. The vulnerability can be exploited to read memory up to nine bytes beyond the buffer's limits, potentially leading to a crash or a memory leak.
Users can upgrade to ION-DTN version 4.2.0 or later, where this vulnerability has been patched.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Sep 2, 2026CISA-ADP
Assessed Sep 4, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://github.com/nasa-jpl/ION-DTN/security/advisories/GHSA-85pw-28vw-2jf7 | CISA-ADP | AdvisoryExploitRemedyVendor |
| https://github.com/nasa-jpl/ION-DTN | [email protected] | Source CodeVendor |
| https://github.com/nasa-jpl/ION-DTN/blob/ion-open-source-4.1.4/ici/library/ion.c#L1693 | [email protected] | Source CodeVendor |
| https://github.com/nasa-jpl/ION-DTN/blob/ion-open-source-4.1.4/ici/library/platform.c#L1982 | [email protected] | Source CodeVendor |
| https://github.com/nasa-jpl/ION-DTN/commit/d52d22bdd383798712357f86a2778757f740e812 | [email protected] | Source CodeVendor |
| https://github.com/nasa-jpl/ION-DTN/releases/tag/ion-open-source-4.2.0 | [email protected] | Release NotesVendor |
| https://github.com/nasa-jpl/ION-DTN/security/advisories/GHSA-85pw-28vw-2jf7 | [email protected] | AdvisoryExploitRemedyVendor |
| https://www.vulncheck.com/advisories/ion-dtn-before-4.2.0-out-of-bounds-read-via-decodesdnv | [email protected] | AdvisoryRemedy |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-125 | Out-of-bounds Read | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| NASA JPL ION-DTN | < 4.2.0 (semver) |
CPE
Remediation
| |
Change History
2 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Sep 4, 2026 | CVE Modified | CISA-ADP |
| Sep 2, 2026 | New CVE Received | [email protected] |
Volerion