Vulnerabilities > CVE-2021-27425 - Unspecified vulnerability in Cesanta Mongoose OS 2.17.0
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
HIGH Integrity impact
HIGH Availability impact
HIGH Summary
Cesanta Software Mongoose-OS v2.17.0 is vulnerable to integer wrap-around in function mm_malloc. This improper memory assignment can lead to arbitrary memory allocation, resulting in unexpected behavior such as a crash or a remote code injection/execution.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
OS | 1 |