Lucene search

K
cnvdChina National Vulnerability DatabaseCNVD-2021-95621
HistoryOct 13, 2021 - 12:00 a.m.

Zephyr integer underflow vulnerability

2021-10-1300:00:00
China National Vulnerability Database
www.cnvd.org.cn
11
zephyr
integer underflow
6lowpan
iphc
header
decompression
vulnerability
attackers
out-of-bounds access
pv6 parsing logic
interconnected devices
embedded
real-time operating system

EPSS

0.004

Percentile

75.0%

Zephyr is a small real-time operating system for interconnected, resource-constrained embedded devices. an integer underflow vulnerability in 6LoWPAN IPHC header decompression in Zephyr 2.4.0 and later can be exploited by attackers to cause out-of-bounds access in the Pv6 parsing logic.

EPSS

0.004

Percentile

75.0%

Related for CNVD-2021-95621