Vulnerabilities > CVE-2021-28904 - Unchecked Return Value vulnerability in Cesnet Libyang
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
HIGH Summary
In function ext_get_plugin() in libyang <= v1.0.225, it doesn't check whether the value of revision is NULL. If revision is NULL, the operation of strcmp(revision, ext_plugins[u].revision) will lead to a crash.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 22 |