CVE-2026-39929 | Lakeside SysTrack Agent prior 11.2.1.28/11.3.0.38/11.4.0.24/11.5.0.15 out-of-bounds
ID: 03bdd9d7-bfe3-57b8-a651-924bc12a12b6
STIX ID: report--03bdd9d7-bfe3-57b8-a651-924bc12a12b6
Feed Name: VulDB Recent Entries
Lakeside SysTrack Agent contains an out-of-bounds read vulnerability (CVE-2026-39929) in the Command ID 30 UDP packet handler that allows remote attackers to cause an application crash/denial of service by sending a specially crafted UDP packet; affected versions are prior to 11.2.1.28, 11.3.0.38, 11.4.0.24 and 11.5.0.15 and the vendor recommends upgrading to the listed fixed versions. The advisory attributes discovery to Austin A. Defrancesco, notes exploitation is straightforward in concept but no public exploit or technical details are available, and the primary impact is availability (DoS).
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
