CVE-2025-66624 | bacnet-stack up to 1.5.0.rc1 BACnet Protocol src/bacnet/npdu.c bacnet_npdu_decode out-of-bounds (GHSA-8wgw-5h6x-qgqg)
A vulnerability identified as problematic has been detected in bacnet-stack up to 1.5.0.rc1. The impacted element is the function bacnet_npdu_decode of the file src/bacnet/npdu.c of the component BACnet Protocol Handler. Performing manipulation results in out-of-bounds read.
This vulnerability is cataloged as CVE-2025-66624. It is possible to initiate the attack remotely. There is no exploit available.
You should upgrade the affected component.