High severity7.3NVD Advisory· Published Mar 26, 2024· Updated Jun 17, 2026
CVE-2024-2212
CVE-2024-2212
Description
In Eclipse ThreadX before 6.4.0, xQueueCreate() and xQueueCreateSet() functions from the FreeRTOS compatibility API (utility/rtos_compatibility_layers/FreeRTOS/tx_freertos.c) were missing parameter checks. This could lead to integer wraparound, under-allocations and heap buffer overflows.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3Patches
Vulnerability mechanics
References
3- github.com/eclipse-threadx/threadx/security/advisories/GHSA-v9jj-7qjg-h6g6nvdExploitPatchVendor Advisory
- seclists.org/fulldisclosure/2024/May/35nvdMailing List
- www.openwall.com/lists/oss-security/2024/05/28/1nvdMailing List
News mentions
0No linked articles in our index yet.