← Back to search

CVE-2017-20241

9.8 CRITICAL

Published 2026-08-04 · Updated 2026-08-04

AI risk analysis

Summary
The flaw is a heap-based buffer overflow in Keysight IxChariot Endpoint versions before 9.5.102, allowing unauthenticated remote attackers to crash the endpoint or execute arbitrary code.
Exploitability
Exploitation requires sending a specially crafted packet; no authentication needed, making it relatively easy for attackers with network access.
Blast radius
If exploited, this could lead to complete system compromise and potential data loss or theft on affected endpoints.
Prioritized remediation
Update Keysight IxChariot Endpoint to version 9.5.102 or later immediately.
rceheap-overflowremote-code-executioncritical

Analysis generated locally by qwen2.5:7b-instruct (no data left the box). AI-assisted — verify against primary sources before acting.

NVD description

Keysight IxChariot Endpoint before 9.5.102 contains a heap-based buffer overflow. An unauthenticated remote attacker can send a specially crafted packet to crash the endpoint or potentially execute arbitrary code.

CVSS vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Weaknesses

CWE-122

All references

Source data: NVD (nvd.nist.gov), public domain. Exploit-DB.ai adds local AI analysis for defensive use only.