← Back to search

CVE-2017-20241

9.8 CRITICAL

Published 2026-08-04 · Updated 2026-08-04

AI risk analysis

Summary
The flaw is a heap-based buffer overflow in Keysight IxChariot Endpoint versions before 9.5.102, allowing unauthenticated attackers to crash the endpoint or potentially execute arbitrary code.
Exploitability
Exploitation is relatively straightforward as it requires sending a specially crafted packet, and no authentication is needed.
Blast radius
If exploited, this could lead to complete system compromise, allowing attackers to execute arbitrary code on the affected endpoint.
Detection
No reliable host or network indicator is derivable from the published description.
Prioritized remediation
Upgrade to IxChariot Endpoint 9.5.102 or later.
rceheap-overflowunauthcode-execution

Analysis generated locally by qwen2.5:7b-instruct (no data left the box). AI-assisted — verify against primary sources before acting.

NVD description

Keysight IxChariot Endpoint before 9.5.102 contains a heap-based buffer overflow. An unauthenticated remote attacker can send a specially crafted packet to crash the endpoint or potentially execute arbitrary code.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Weaknesses

CWE-122

All references

Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.

Related CVEs

Related by shared AI tags and CWE weakness class. Browse the full archive.