6.4
CVSSv2

CVE-2021-4070

Published: 23/02/2022 Updated: 02/03/2022
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
CVSS v3 Base Score: 9.1 | Impact Score: 5.2 | Exploitability Score: 3.9
VMScore: 570
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:P

Vulnerability Summary

Off-by-one Error in GitHub repository v2fly/v2ray-core before 4.44.0.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

v2fly v2ray-core

Vendor Advisories

Debian Bug report logs - #1010377 V2Ray CVE-2021-4070 DoS by Authenticated VMess Server patch not applied Package: v2ray; Maintainer for v2ray is Debian Go Packaging Team <team+pkg-go@trackerdebianorg>; Source for v2ray is src:golang-v2ray-core (PTS, buildd, popcon) Reported by: Shelikhoo <shelikhoo@v2flyorg> Date ...