Vulnerabilities > CVE-2021-3330 - Out-of-bounds Write vulnerability in Zephyrproject Zephyr 2.4.0

047910
CVSS 5.8 - MEDIUM
Attack vector
ADJACENT_NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
low complexity
zephyrproject
CWE-787

Summary

RCE/DOS: Linked-list corruption leading to large out-of-bounds write while sorting for forged fragment list in Zephyr. Zephyr versions >= >=2.4.0 contain Out-of-bounds Write (CWE-787). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-fj4r-373f-9456

Vulnerable Configurations

Part Description Count
OS
Zephyrproject
4

Common Weakness Enumeration (CWE)