THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-10773 (MEDIUM 5.4) — The DHCPv4 client helper net_dhcpv4_msg_type_name() in subsys/net/lib/dhcpv4/dhcpv4.c indexes a static 8-element const char * name table after a faulty bounds check. The guard used msg_type <= sizeof(name) instead of msg_type <= ARRAY_SIZE(name); sizeof returns the byte size of t

[NVD] CVE-2026-10773 (MEDIUM 5.4) — The DHCPv4 client helper net_dhcpv4_msg_type_name() in subsys/net/lib/dhcpv4/dhcpv4.c indexes a static 8-element const char * name table after a faulty bounds check. The guard used msg_type <= sizeof(name) instead of msg_type <= ARRAY_SIZE(name); sizeof returns the byte size of t

mednvdPublished 2026-08-01

CVE-2026-10773 CVSS: 5.4 MEDIUM Published: 2026-08-01T13:16:56.987

The DHCPv4 client helper net_dhcpv4_msg_type_name() in subsys/net/lib/dhcpv4/dhcpv4.c indexes a static 8-element const char * name table after a faulty bounds check. The guard used msg_type <= sizeof(name) instead of msg_type <= ARRAY_SIZE(name); sizeof returns the byte size of the pointer array (32 on 32-bit, 64 on 64-bit targets

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-10773