{"description":"Trending threats, MITRE ATT\u0026CK coverage, and detection metadata. Fed continuously.","favicon":"https://feed.craftedsignal.io/favicon-32x32.png","feed_url":"https://feed.craftedsignal.io/cpes/cpe2.3anasaion-dtn/feed.json","home_page_url":"https://feed.craftedsignal.io/","icon":"https://feed.craftedsignal.io/apple-touch-icon.png","items":[{"_cs_actors":[],"_cs_cpes":["cpe:2.3:a:nasa:ion-dtn:*:*:*:*:*:*:*:*"],"_cs_cves":[{"cvss":7.5,"id":"CVE-2026-84484"}],"_cs_exploited":false,"_cs_has_poc":false,"_cs_poc_references":[],"_cs_products":["ION-DTN (\u003c 4.2.0)"],"_cs_severities":["low"],"_cs_tags":[],"_cs_type":"advisory","_cs_vendors":["NASA"],"content_html":"\u003cp\u003eION-DTN versions before 4.2.0 are susceptible to an out-of-bounds read vulnerability located within the decodeSdnv function. This flaw allows an unauthenticated, remote attacker to gain unauthorized access to memory by transmitting specifically crafted, truncated Self-Delimiting Numeric Value (SDNV) data. The vulnerability is triggered when the LTP (Licklider Transmission Protocol) link service receives a UDP datagram containing an intentionally malformed SDNV. Successfully exploiting this issue allows an attacker to read up to nine bytes past existing buffer boundaries and can cause byte counter underflow, potentially leading to service disruption or information disclosure. The vulnerability is a significant concern for environments utilizing Delay-Tolerant Networking (DTN) architectures.\u003c/p\u003e\n\u003ch2 id=\"attack-chain\"\u003eAttack Chain\u003c/h2\u003e\n\u003col\u003e\n\u003cli\u003eAttacker identifies a network segment with an exposed ION-DTN LTP link service input port.\u003c/li\u003e\n\u003cli\u003eAttacker crafts a UDP datagram containing an intentionally truncated SDNV value.\u003c/li\u003e\n\u003cli\u003eAttacker transmits the crafted UDP datagram to the target LTP link service.\u003c/li\u003e\n\u003cli\u003eThe ION-DTN service processes the incoming datagram via the decodeSdnv function.\u003c/li\u003e\n\u003cli\u003eThe decodeSdnv function encounters the truncated SDNV, failing to perform proper boundary validation.\u003c/li\u003e\n\u003cli\u003eThe system performs an out-of-bounds read, accessing up to nine bytes of unauthorized memory.\u003c/li\u003e\n\u003cli\u003eThe byte counter undergoes an underflow, potentially causing process instability or application crashes.\u003c/li\u003e\n\u003c/ol\u003e\n\u003ch2 id=\"impact\"\u003eImpact\u003c/h2\u003e\n\u003cp\u003eSuccessful exploitation of CVE-2026-84484 allows remote, unauthenticated attackers to read out-of-bounds memory. This can lead to the exposure of sensitive data stored in memory or cause service-wide instability through byte counter underflows. The impact is significant for mission-critical communication infrastructure relying on Delay-Tolerant Networking.\u003c/p\u003e\n\u003ch2 id=\"recommendation\"\u003eRecommendation\u003c/h2\u003e\n\u003cp\u003ePrioritized, concrete actions for infrastructure and security teams:\u003c/p\u003e\n\u003cul\u003e\n\u003cli\u003eUpgrade all instances of ION-DTN to version 4.2.0 or later immediately to address CVE-2026-84484.\u003c/li\u003e\n\u003cli\u003eImplement network-level access control lists (ACLs) to restrict access to LTP link service ports, ensuring only authorized communication partners can transmit data.\u003c/li\u003e\n\u003cli\u003eMonitor network traffic logs for anomalous UDP datagrams targeting ION-DTN LTP service ports, focusing on malformed or abnormally sized SDNV packets.\u003c/li\u003e\n\u003c/ul\u003e\n","date_modified":"2026-09-02T03:11:04Z","date_published":"2026-09-02T03:11:04Z","id":"https://feed.craftedsignal.io/briefs/2026-09-cve-2026-84484/","summary":"ION-DTN versions prior to 4.2.0 contain an out-of-bounds read vulnerability in the decodeSdnv function, allowing unauthenticated remote attackers to trigger unauthorized memory access via truncated SDNV values.","title":"Out-of-Bounds Read in ION-DTN decodeSdnv Function","url":"https://feed.craftedsignal.io/briefs/2026-09-cve-2026-84484/"}],"language":"en","title":"CraftedSignal Threat Feed - Cpe:2.3:a:nasa:ion-Dtn:*:*:*:*:*:*:*:*","version":"https://jsonfeed.org/version/1.1"}