Описание
Azure RTOS Information Disclosure Vulnerability
FAQ
What is RTOS?
Azure RTOS is an embedded development suite including a small but powerful operating system that provides reliable, ultra-fast performance for resource-constrained devices. See Azure RTOS Overview for more information.
What version of Azure RTOS has the update that protects from this vulnerability?
Version 6.1.9
According to the CVSS, User Interaction is Required. What interaction would the user have to do?
Exploitation of this vulnerability requires that a user plug in a malicious USB device.
What is the action required to take the update?
You need to recompile your project with updated USBX source code if the project uses host audio/video/CDC-ECM/PIMA, or device storage class.
Возможность эксплуатации
Publicly Disclosed
Exploited
Latest Software Release
Older Software Release
EPSS
3.3 Low
CVSS3
Связанные уязвимости
Azure RTOS Information Disclosure Vulnerability This CVE ID is unique from CVE-2021-26444, CVE-2021-42301.
Уязвимость операционной системы Azure RTOS, связанная с недостатками разграничений контролируемой области системы, позволяющая нарушителю получить несанкционированный доступ к устройству
EPSS
3.3 Low
CVSS3