Lucene search

K
cve[email protected]CVE-2021-29219
HistoryFeb 04, 2022 - 11:15 p.m.

CVE-2021-29219

2022-02-0423:15:11
CWE-120
web.nvd.nist.gov
33
cve-2021-29219
buffer overflow
hpe flexnetwork
security vulnerability
software update
nvd

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

7.8 High

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

7.6 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

A potential local buffer overflow vulnerability has been identified in HPE FlexNetwork 5130 EL Switch Series version: Prior to 5130_EI_7.10.R3507P02. HPE has made the following software update to resolve the vulnerability in HPE FlexNetwork 5130 EL Switch Series version 5130_EL_7.10.R3507P02.

Affected configurations

NVD
Node
hpeflexnetwork_5130_jg932aMatch-
AND
hpeflexnetwork_5130_jg932a_firmwareRange<5130_ei_7.10.r3507p02
Node
hpeflexnetwork_5130_jg933aMatch-
AND
hpeflexnetwork_5130_jg933a_firmwareRange<5130_ei_7.10.r3507p02
Node
hpeflexnetwork_5130_jg934aMatch-
AND
hpeflexnetwork_5130_jg934a_firmwareRange<5130_ei_7.10.r3507p02
Node
hpeflexnetwork_5130_jg936aMatch-
AND
hpeflexnetwork_5130_jg936a_firmwareRange<5130_ei_7.10.r3507p02
Node
hpeflexnetwork_5130_jg937aMatch-
AND
hpeflexnetwork_5130_jg937a_firmwareRange<5130_ei_7.10.r3507p02
Node
hpeflexnetwork_5130_jg940aMatch-
AND
hpeflexnetwork_5130_jg940a_firmwareRange<5130_ei_7.10.r3507p02
Node
hpeflexnetwork_5130_jg941aMatch-
AND
hpeflexnetwork_5130_jg941a_firmwareRange<5130_ei_7.10.r3507p02

CNA Affected

[
  {
    "product": "HPE FlexNetwork 5130 EI Switch Series",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "Prior to 5130_EI_7.10.R3507P02"
      }
    ]
  }
]

4.6 Medium

CVSS2

Attack Vector

LOCAL

Attack Complexity

LOW

Authentication

NONE

Confidentiality Impact

PARTIAL

Integrity Impact

PARTIAL

Availability Impact

PARTIAL

AV:L/AC:L/Au:N/C:P/I:P/A:P

7.8 High

CVSS3

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

LOW

User Interaction

NONE

Scope

UNCHANGED

Confidentiality Impact

HIGH

Integrity Impact

HIGH

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

7.6 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

Related for CVE-2021-29219