Security: sm0svx/svxlink
Security
No security policy detected
This project has not set up a SECURITY.md file yet.
Report a vulnerability-
Audio decoders: attacker-sized stack VLA from encoded-frame length → stack exhaustion (network)GHSA-xmcv-mjpv-x46q published
Jul 15, 2026 by sm0svxModerate -
remotetrx NetUplink: server-initiated disconnect leaks the connection object → unbounded resource exhaustion (network DoS)GHSA-5xr9-fmm8-7p8x published
Jul 21, 2026 by sm0svxHigh -
RtlTcp: malformed rtl_tcp greeting triggers `exit(1)` → full daemon denial of serviceGHSA-38fq-mrrg-8rmr published
Jul 21, 2026 by sm0svxHigh -
FRN module: unvalidated server-supplied list item count → unbounded memory growth (DoS)GHSA-qccg-7pw6-787v published
Jul 22, 2026 by sm0svxHigh -
Async HTTP server: unbounded request-line/header accumulation → memory-exhaustion DoSGHSA-58ph-q79f-7x9x published
Jul 13, 2026 by sm0svxHigh -
svxreflector: reentrant `delete client` → use-after-free on `this` via `sendError()` write-failure pathGHSA-r2gm-p682-3mpm published
Jul 13, 2026 by sm0svxHigh -
svxlink reflector client: TCL command injection via server-supplied talker callsignGHSA-pc2g-2p95-4cr5 published
Jul 15, 2026 by sm0svxHigh -
svxreflector: use-after-free write via dangling `Json::Value&` on repeated `MsgNodeInfo`GHSA-6wgq-wg3w-jgvx published
Jul 13, 2026 by sm0svxHigh -
NetRx: unvalidated `MsgAudio` length → out-of-bounds read (network)GHSA-mh75-5pr3-qv2p published
Jul 16, 2026 by sm0svxHigh -
LocationInfo: avoid buffer overflow in APRS message constructionGHSA-4f8x-49pf-3x5v published
Jul 13, 2026 by sm0svxHigh
Learn more about advisories related to sm0svx/svxlink in the GitHub Advisory Database