CVE-2024-54130 - CVE House
Back to Database
Status published Critical CVE-2024-54130

Segmentation Fault in `forwardBundle` Function of ION-DTN BPv7 When Destination EID is `dtn:none` (public)

Vulnerability Description

The NASA’s Interplanetary Overlay Network (ION) is an implementation of Delay/Disruption Tolerant Networking (DTN). A segmentation fault occurs with ION-DTN BPv7 software version 4.1.3 when a bundle with a Destination Endpoint ID (EID) set to dtn:none is received. This causes the node to become unresponsive to incoming bundles, leading to a Denial of Service (DoS) condition. This vulnerability is fixed in 4.1.3s.

Impact Analysis

Refer to official advisory for detailed impact metrics.

Remediation

Ensure systems are updated to the latest vendor-supplied patch levels.

THREAT MONITOR

Am I Vulnerable?

Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2024-54130

Credits & Attribution

No credits recorded in the NVD database.

Affected Vendor

Affected Software

ION-DTN
Vulnerable Versions:
< 4.1.3s

Timeline

Official Publish: December 5th, 2024
Last Modified: December 5th, 2024
Added to House: July 22nd, 2026

CVSS Vectors

Weaknesses (CWE)