logo

Flaw in MQX Operating System Could Put Internet of Things in Crosshairs

ID: 1e63b973-8195-5962-82b2-9cc8968fc6b2

STIX ID: report--1e63b973-8195-5962-82b2-9cc8968fc6b2

Feed Name: Security Ledger

Threat Score
70/100

Date Published: 2017-10-25

Date Updated: 2026-04-26

Author: Paul Roberts

...
...

An ICS‑CERT advisory warns of critical vulnerabilities in NXP's MQX RTOS — a DHCP client buffer overflow that may allow remote code execution and a DNS client out‑of‑bounds read causing DoS — affecting many embedded devices (ColdFire, Kinetis, i.MX, Vybrid). NXP has published mitigation guidance and intends to release patched MQX versions; exposure is significant where devices are internet‑reachable or can be used as internal pivot points.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.