6.4
CVSSv3

CVE-2021-3700

Published: 24/02/2022 Updated: 25/04/2022
CVSS v2 Base Score: 4.4 | Impact Score: 6.4 | Exploitability Score: 3.4
CVSS v3 Base Score: 6.4 | Impact Score: 5.9 | Exploitability Score: 0.5
VMScore: 392
Vector: AV:L/AC:M/Au:N/C:P/I:P/A:P

Vulnerability Summary

A use-after-free vulnerability was found in usbredir in versions before 0.11.0 in the usbredirparser_serialize() in usbredirparser/usbredirparser.c. This issue occurs when serializing large amounts of buffered write data in the case of a slow or blocked destination.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

spice-space usbredir

redhat enterprise linux 6.0

redhat enterprise linux 7.0

redhat enterprise linux 8.0

fedoraproject fedora 34

debian debian linux 9.0

Vendor Advisories

No description is available for this CVE ...
An use-after-free vulnerability was found in usbredir in versions prior to 0110 in usbredirparser_serialize() in usbredirparser/usbredirparserc when serializing large amounts of buffered write data in case of a slow or blocked destination ...