Vulnerabilities > CVE-2021-3434 - Out-of-bounds Write vulnerability in Zephyrproject Zephyr 2.5.0/2.5.1

047910
CVSS 7.8 - HIGH
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
LOW
Confidentiality impact
HIGH
Integrity impact
HIGH
Availability impact
HIGH
local
low complexity
zephyrproject
CWE-787

Summary

Stack based buffer overflow in le_ecred_conn_req(). Zephyr versions >= v2.5.0 Stack-based Buffer Overflow (CWE-121). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-8w87-6rfp-cfrm

Vulnerable Configurations

Part Description Count
OS
Zephyrproject
6

Common Weakness Enumeration (CWE)