


Perceptive Security
SOC/SIEM Consultancy

Keysight IxChariot Endpoint before 9.5.102 contains a heap-based buffer overflow. An unauthenticated remote attacker can send a specially crafted packet to cras…
Published:
3 augustus 2026 om 22:00:00
Alert date:
4 augustus 2026 om 20:02:01
Source:
nvd.nist.gov
Network Infrastructure, Critical Infrastructure
CVE-2017-20241 describes a heap-based buffer overflow vulnerability in Keysight IxChariot Endpoint versions prior to 9.5.102. The flaw allows an unauthenticated remote attacker to send a specially crafted packet to the affected endpoint. Exploitation can result in a crash of the endpoint service (denial of service) or potentially enable arbitrary code execution. No authentication is required to exploit this vulnerability, significantly increasing its risk. The vulnerability was publicly disclosed via NVD and is referenced in a CISA advisory. Keysight has published a security advisory acknowledging the issue and recommending upgrade to version 9.5.102 or later. The severity is rated High due to the potential for remote code execution without authentication.
Technical details
Mitigation steps:
Affected products:
Keysight IxChariot Endpoint
Related links:
https://nvd.nist.gov/vuln/detail/CVE-2017-20241
https://raw.githubusercontent.com/cisagov/CSAF/develop/csaf_files/IT/white/2026/va-26-216-01.json
https://www.cve.org/CVERecord?id=CVE-2017-20241
https://www.keysight.com/us/en/about/quality-and-security/security/product-and-solution-cyber-security/security-advisory-archive/security-advisory--ixchariot-vulnerability.html
Related CVE's:
Related threat actors:
IOC's:
This article was created with the assistance of AI technology by Perceptive.
