Meshtastic is an open source mesh networking solution. From 1.2.1 until 2.6.2, a packet sent to the routing module that contains want_response==true causes a crash. This can lead to a degradation of service for nodes within range of a malicious sender, or via MQTT if downlink is enabled. This vulnerability is fixed in 2.6.2.
Metrics
Affected Vendors & Products
References
History
Wed, 16 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|
epss
|
Fri, 11 Jul 2025 17:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Fri, 11 Jul 2025 13:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
epss
|

Status: PUBLISHED
Assigner: GitHub_M
Published: 2025-07-10T21:22:30.299Z
Updated: 2025-07-11T16:51:10.534Z
Reserved: 2025-01-23T17:11:35.838Z
Link: CVE-2025-24798

Updated: 2025-07-11T16:51:06.227Z

Status : Awaiting Analysis
Published: 2025-07-10T22:15:24.387
Modified: 2025-07-15T13:14:49.980
Link: CVE-2025-24798

No data.