Vulnerabilities > ST > Stm32Cube Middleware

DATE CVE VULNERABILITY TITLE RISK
2021-07-22 CVE-2021-34259 Classic Buffer Overflow vulnerability in ST Stm32Cube Middleware
A buffer overflow vulnerability in the USBH_ParseCfgDesc() function of STMicroelectronics STM32Cube Middleware v1.8.0 and below allows attackers to execute arbitrary code.
low complexity
st CWE-120
6.8
2021-07-22 CVE-2021-34260 Classic Buffer Overflow vulnerability in ST Stm32Cube Middleware
A buffer overflow vulnerability in the USBH_ParseInterfaceDesc() function of STMicroelectronics STM32Cube Middleware v1.8.0 and below allows attackers to execute arbitrary code.
low complexity
st CWE-120
6.8
2021-07-22 CVE-2021-34261 Unspecified vulnerability in ST Stm32Cube Middleware
An issue in USBH_ParseCfgDesc() of STMicroelectronics STM32Cube Middleware v1.8.0 and below causes a denial of service due to the system hanging when trying to set a remote wake-up feature.
low complexity
st
4.6
2021-07-22 CVE-2021-34262 Classic Buffer Overflow vulnerability in ST Stm32Cube Middleware
A buffer overflow vulnerability in the USBH_ParseEPDesc() function of STMicroelectronics STM32Cube Middleware v1.8.0 and below allows attackers to execute arbitrary code.
low complexity
st CWE-120
6.8
2021-07-22 CVE-2021-34267 Unspecified vulnerability in ST Stm32Cube Middleware
An in the USBH_MSC_InterfaceInit() function of STMicroelectronics STM32Cube Middleware v1.8.0 and below causes a denial of service (DOS) when the system tries to communicate with the connected endpoint.
low complexity
st
4.6
2021-07-22 CVE-2021-34268 Unspecified vulnerability in ST Stm32Cube Middleware
An issue in the USBH_ParseDevDesc() function of STMicroelectronics STM32Cube Middleware v1.8.0 and below causes a denial of service (DOS) via a malformed USB device packet.
low complexity
st
4.6