Fiche vulnérabilité
CVE-2021-38443 : faille critique eclipse cyclonedds (CVSS 9.8)
Description
Eclipse CycloneDDS versions prior to 0.8.0 improperly handle invalid structures, which may allow an attacker to write arbitrary values in the XML parser.
En bref
- Sévérité
- Critique (CVSS 9.8)
- Vecteur CVSS
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
- Exploitation active
- Non signalée par la CISA
- Publication
- 5 mai 2022
- Dernière mise à jour
- 17 juin 2026
Produits concernés
- eclipse cyclonedds