Vulnerabilities > CVE-2021-27427 - Unspecified vulnerability in Riot-Os Riot 2020.01.1

047910
CVSS 9.8 - CRITICAL
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
network
low complexity
riot-os
critical

Summary

RIOT OS version 2020.01.1 is vulnerable to integer wrap-around in its implementation of calloc function, which can lead to arbitrary memory allocation, resulting in unexpected behavior such as a crash or a remote code injection/execution.

Vulnerable Configurations

Part Description Count
OS
Riot-Os
1