CVE-2018-16598
CVE-2018-16598 is a medium-severity vulnerability in Amazon Amazon Web Services Freertos with a CVSS 3.x base score of 5.9. It is not currently listed as actively exploited by CISA, and its EPSS exploit-prediction score is low. The underlying weakness is classified as CWE-441.
Key facts
- Severity: Medium (CVSS 3.x base score 5.9)
- CVSS v2: 4.3
- EPSS exploit prediction: 2% (74th percentile)
- Actively exploited: Not listed in CISA KEV
- Weakness: CWE-441
- Affected product: Amazon Amazon Web Services Freertos
- Published:
- Last modified:
Description
An issue was discovered in Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component. In xProcessReceivedUDPPacket and prvParseDNSReply, any received DNS response is accepted, without confirming it matches a sent DNS request.
Frequently asked questions
- What is CVE-2018-16598?
- An issue was discovered in Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS Connect middleware TCP/IP component. In xProcessReceivedUDPPacket and prvParseDNSReply, any received DNS response is accepted, without confirming it matches a sent DNS request.
- How severe is CVE-2018-16598?
- CVE-2018-16598 has a CVSS 3.x base score of 5.9, rated medium severity. It is exploitable over network with high attack complexity, requires no privileges and no user interaction. Impact on confidentiality is none, integrity high, and availability none.
- Is CVE-2018-16598 being actively exploited?
- It is not currently listed in CISA's KEV catalog. Its EPSS exploit-prediction score is 2% (74th percentile), an estimate of the probability of exploitation in the next 30 days.
- What products are affected by CVE-2018-16598?
- CVE-2018-16598 primarily affects Amazon Amazon Web Services Freertos. In total, 2 product configurations (CPEs) are listed as vulnerable; see the affected-products list for the exact versions.
- How do I fix CVE-2018-16598?
- Review the linked vendor and NVD advisories for patched versions and mitigations, then upgrade or apply the recommended workaround.
- When was CVE-2018-16598 published?
- CVE-2018-16598 was published on 2018-12-06 and last updated on 2026-06-17.
References
- https://blog.zimperium.com/freertos-tcpip-stack-vulnerabilities-details/
- https://blog.zimperium.com/freertos-tcpip-stack-vulnerabilities-put-wide-range-devices-risk-compromise-smart-homes-critical-infrastructure-systems/
- https://github.com/aws/amazon-freertos/blob/v1.3.2/CHANGELOG.md
Affected products (2)
- cpe:2.3:a:amazon:amazon_web_services_freertos:*:*:*:*:*:*:*:*
- cpe:2.3:a:amazon:freertos:*:*:*:*:*:*:*:*
More vulnerabilities in Amazon Amazon Web Services Freertos
- CVE-2018-16601 — High (CVSS 8.1): An issue was discovered in Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with…
- CVE-2018-16528 — High (CVSS 8.1): Amazon Web Services (AWS) FreeRTOS through 1.3.1 allows remote attackers to execute arbitrary code because of mbedTLS…
- CVE-2018-16526 — High (CVSS 8.1): Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS…
- CVE-2018-16525 — High (CVSS 8.1): Amazon Web Services (AWS) FreeRTOS through 1.3.1, FreeRTOS up to V10.0.1 (with FreeRTOS+TCP), and WITTENSTEIN WHIS…
- CVE-2018-16522 — High (CVSS 8.1): Amazon Web Services (AWS) FreeRTOS through 1.3.1 has an uninitialized pointer free in SOCKETS_SetSockOpt.
- CVE-2019-13120 — High (CVSS 7.5): Amazon FreeRTOS up to and including v1.4.8 lacks length checking in prvProcessReceivedPublish, resulting in…
All CVEs affecting Amazon Amazon Web Services Freertos →
Other CWE-441 vulnerabilities
- CVE-2026-69399 — Critical (CVSS 10.0): Azure Arc Elevation of Privilege Vulnerability
- CVE-2026-83548 — Critical (CVSS 10.0): A Pre-authentication SSRF vulnerability exists in the SMA1000 Appliance Work Place interface due to an unintended…
- CVE-2026-42933 — Critical (CVSS 10.0): Pronetiqs IntraVUE versions 3.2.1a14 and prior have an unintended proxy or intermediary vulnerability which could allow…
- CVE-2026-39906 — Critical (CVSS 10.0): Unisys WebPerfect Image Suite versions 3.0.3960.22810 and 3.0.3960.22604 expose a deprecated .NET Remoting TCP channel…
- CVE-2026-100706 — Critical (CVSS 9.9): kyverno before 1.19.1 fails to properly validate URL-encoded path segments in Policy apiCall urlPath, allowing…
- CVE-2026-67567 — Critical (CVSS 9.9): A flaw was found in the multicloud-operators-subscription component. This vulnerability allows a tenant, who has the…