CVE-2026-91018

Summary

lwIP (Lightweight IP) has a double free vulnerability, which could crash the system, cause a DoS, memory corruption, or allow code execution on the victim system.

Affected Software

VendorProductVersion RangeStatus
lwIPlwIP API2.0.1 <= 2.2.1affected

Weaknesses

  • CWE-415: CWE-415 Double free

References