CVE-2021-3570 - CERT CVE
ID CVE-2021-3570
Sažetak A flaw was found in the ptp4l program of the linuxptp package. A missing length check when forwarding a PTP message between ports allows a remote attacker to cause an information leak, crash, or potentially remote code execution. The highest threat from this vulnerability is to data confidentiality and integrity as well as system availability. This flaw affects linuxptp versions before 3.1.1, before 2.0.1, before 1.9.3, before 1.8.1, before 1.7.1, before 1.6.1 and before 1.5.1.
Reference
CVSS
Base: 8.0
Impact: 8.5
Exploitability:8.0
Pristup
VektorSloženostAutentikacija
NETWORK LOW SINGLE
Impact
PovjerljivostCjelovitostDostupnost
PARTIAL PARTIAL COMPLETE
CVSS vektor AV:N/AC:L/Au:S/C:P/I:P/A:C
Zadnje važnije ažuriranje 07-11-2023 - 03:38
Objavljeno 09-07-2021 - 11:15