Aller au contenu

Fiche vulnérabilité

CVE-2021-38311 : vulnérabilité élevée (CVSS 7.5)

Description

In Contiki 3.0, potential nonterminating acknowledgment loops exist in the Telnet service. When the negotiated options are already disabled, servers still respond to DONT and WONT requests with WONT or DONT commands, which may lead to infinite acknowledgment loops, denial of service, and excessive CPU consumption.

En bref

Sévérité
Élevée (CVSS 7.5)
Vecteur CVSS
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Exploitation active
Non signalée par la CISA
Publication
9 août 2021
Dernière mise à jour
4 août 2024

Références

Rechercher une autre vulnérabilité dans la base CVE