Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2021-3700

Опубликовано: 24 фев. 2022
Источник: nvd
CVSS3: 6.4
CVSS2: 4.4
EPSS Низкий

Описание

A use-after-free vulnerability was found in usbredir in versions prior to 0.11.0 in the usbredirparser_serialize() in usbredirparser/usbredirparser.c. This issue occurs when serializing large amounts of buffered write data in the case of a slow or blocked destination.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:spice-space:usbredir:*:*:*:*:*:*:*:*
Версия до 0.11.0 (исключая)
Конфигурация 2

Одно из

cpe:2.3:o:redhat:enterprise_linux:6.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux:8.0:*:*:*:*:*:*:*
Конфигурация 3
cpe:2.3:o:fedoraproject:fedora:34:*:*:*:*:*:*:*
Конфигурация 4
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*

EPSS

Процентиль: 12%
0.00041
Низкий

6.4 Medium

CVSS3

4.4 Medium

CVSS2

Дефекты

CWE-416
CWE-416

Связанные уязвимости

CVSS3: 6.4
ubuntu
почти 4 года назад

A use-after-free vulnerability was found in usbredir in versions prior to 0.11.0 in the usbredirparser_serialize() in usbredirparser/usbredirparser.c. This issue occurs when serializing large amounts of buffered write data in the case of a slow or blocked destination.

CVSS3: 3.9
redhat
больше 4 лет назад

A use-after-free vulnerability was found in usbredir in versions prior to 0.11.0 in the usbredirparser_serialize() in usbredirparser/usbredirparser.c. This issue occurs when serializing large amounts of buffered write data in the case of a slow or blocked destination.

CVSS3: 6.4
msrc
почти 4 года назад

Описание отсутствует

CVSS3: 6.4
debian
почти 4 года назад

A use-after-free vulnerability was found in usbredir in versions prior ...

CVSS3: 6.4
github
почти 4 года назад

A use-after-free vulnerability was found in usbredir in versions prior to 0.11.0 in the usbredirparser_serialize() in usbredirparser/usbredirparser.c. This issue occurs when serializing large amounts of buffered write data in the case of a slow or blocked destination.

EPSS

Процентиль: 12%
0.00041
Низкий

6.4 Medium

CVSS3

4.4 Medium

CVSS2

Дефекты

CWE-416
CWE-416