7.5
CVSSv2

CVE-2021-3319

Published: 05/10/2021 Updated: 25/10/2022
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

DOS: Incorrect 802154 Frame Validation for Omitted Source / Dest Addresses. Zephyr versions >= > v2.4.0 contain NULL Pointer Dereference (CWE-476), Attempt to Access Child of a Non-structure Pointer (CWE-588). For more information, see github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-94jg-2p6q-5364

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

zephyrproject zephyr

Vendor Advisories

Debian Bug report logs - #989492 golang-116: CVE-2021-33196: archive/zip: malformed archive may cause panic or memory exhaustion Package: src:golang-116; Maintainer for src:golang-116 is Go Compiler Team <team+go-compiler@trackerdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sat, 5 Jun 2 ...