{"id":"CVE-2026-38819","details":"Multiple memory leaks in openNDS before 11.0.0 allow an unauthenticated attacker on the captive portal network to exhaust all available memory on the device within minutes.","modified":"2026-09-11T09:01:30.719212Z","published":"2026-08-28T00:03:48.909Z","database_specific":{"cna_assigner":"mitre","cwe_ids":["CWE-401"],"osv_generated_from":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/38xxx/CVE-2026-38819.json"},"references":[{"type":"ADVISORY","url":"https://github.com/CVEProject/cvelistV5/tree/main/cves/2026/38xxx/CVE-2026-38819.json"},{"type":"ADVISORY","url":"https://nvd.nist.gov/vuln/detail/CVE-2026-38819"},{"type":"FIX","url":"https://github.com/openNDS/openNDS/commit/b2801d9f14af44a23be7e9a1c378623bc5947c4c"},{"type":"FIX","url":"https://github.com/openNDS/openNDS/commit/f2332e68c6d34f8403db346e380fff3817020d5c"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/opennds/opennds","events":[{"introduced":"0"},{"fixed":"9477b224bfd6d7f27ab1f1931afb61580b9470d1"},{"fixed":"b2801d9f14af44a23be7e9a1c378623bc5947c4c"},{"fixed":"f2332e68c6d34f8403db346e380fff3817020d5c"}],"database_specific":{"extracted_events":[{"introduced":"0"},{"fixed":"11.0.0"}],"source":["DESCRIPTION","REFERENCES"]}}],"versions":["v10.3.1","v10.3.0","v10.2.0","v10.1.3","v10.1.2","v10.1.1","v10.1.0","v9.10.0","v9.9.1","v9.9.0","v9.8.0","v9.7.0","v9.6.0","v9.5.1","v9.5.0","v9.4.0","v9.3.0","v9.2.0","v9.1.1","v9.1.0","v9.0.0","v8.1.1","v8.1.0","v8.0.0","v7.0.1","v7.0.0","v6.0.0","v5.2.0","v5.1.0","v5.0.1","v5.0.0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2026-38819.json","vanir_signatures_modified":"2026-09-11T09:01:30Z","vanir_signatures":[{"digest":{"line_hashes":["129046054412747827250796209430849751913","214302841299142504597926051500933408223","150172543663761364457615345755501208065","284056708882977608973137778671592218504","188937710688849431400846893317206117010","136324810568890565461339175794294241662","210463544240517800967650925818156664670","214140102912217357544600559466215149749","30729745128510514249744906307324950835","269017084167278190447828362029098579029","321810900656669132951826881599784056435","312393855333581683287193913945693601823","98204493471413654371284739122623467880","110074330532915365809217852549278968047","183889864091428640761457249552798590473","305016482496932984634165727980699879738","301797914254784622910317892345844323303","214140102912217357544600559466215149749","186612465351896544442929105306612450629","69503521095870624026867577000558936161","138776417763006335385385279798792170513","336177079487450207940380246866852076022","207188028422319273669511494858141444315","13595028978181410165687111962062332366","240258115098814207278865091195536466270","56803610347554005981513368800402184813","224791098186966544904055312383203281355","168422800740030894525933061837312301980"],"threshold":0.9},"id":"CVE-2026-38819-2396736a","signature_type":"Line","signature_version":"v1","source":"https://github.com/opennds/opennds/commit/f2332e68c6d34f8403db346e380fff3817020d5c","target":{"file":"src/auth.c"},"deprecated":false},{"id":"CVE-2026-38819-36605f72","signature_type":"Function","signature_version":"v1","source":"https://github.com/opennds/opennds/commit/b2801d9f14af44a23be7e9a1c378623bc5947c4c","target":{"file":"src/ndsctl_thread.c","function":"ndsctl_auth"},"deprecated":false,"digest":{"function_hash":"8986774506153954680056777775084562771","length":4524}},{"id":"CVE-2026-38819-64cc5ae2","signature_type":"Line","signature_version":"v1","source":"https://github.com/opennds/opennds/commit/b2801d9f14af44a23be7e9a1c378623bc5947c4c","target":{"file":"src/ndsctl_thread.c"},"deprecated":false,"digest":{"threshold":0.9,"line_hashes":["129046054412747827250796209430849751913","214302841299142504597926051500933408223","150172543663761364457615345755501208065","284056708882977608973137778671592218504","190767495242519839481543264268567684840","138048987987128100132580129237876085073","119040488416600298572054012300694399339","30729745128510514249744906307324950835","269017084167278190447828362029098579029","321810900656669132951826881599784056435","312393855333581683287193913945693601823","98204493471413654371284739122623467880","110074330532915365809217852549278968047","303190141624879955078516965693967607172","2634093140442021334455659644044869234","285310427433439059222888419558109123285","186612465351896544442929105306612450629","69503521095870624026867577000558936161","178613117136763603786895424069481235189","62657549646399394917815895747193885873","138776417763006335385385279798792170513","336177079487450207940380246866852076022"]}},{"deprecated":false,"digest":{"function_hash":"135004359508904843014060063141230406924","length":4462},"id":"CVE-2026-38819-bc4accc6","signature_type":"Function","signature_version":"v1","source":"https://github.com/opennds/opennds/commit/f2332e68c6d34f8403db346e380fff3817020d5c","target":{"file":"src/auth.c","function":"client_auth"}},{"target":{"file":"src/auth.c","function":"binauth_action"},"deprecated":false,"digest":{"function_hash":"89455477633023836512767382010767549851","length":1844},"id":"CVE-2026-38819-f514061a","signature_type":"Function","signature_version":"v1","source":"https://github.com/opennds/opennds/commit/f2332e68c6d34f8403db346e380fff3817020d5c"}]}}],"schema_version":"1.9.0","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:A/AC:H/PR:N/UI:N/S:U/C:N/I:N/A:H"}]}