CVE-2021-36762 Information

Description

An issue was discovered in HCC Embedded InterNiche NicheStack through 4.3. The tfshnd():tftpsrv.c TFTP packet processing function doesn’t ensure that a filename is adequately ‘\0’ terminated; therefore a subsequent call to strlen for the filename might read out of bounds of the protocol packet buffer (if no ‘\0’ byte exists within a reasonable range).

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

Reference

https://www.kb.cert.org/vuls/id/608209 https://www.hcc-embedded.com/about/about-interniche https://www.forescout.com/blog/new-critical-operational-technology-vulnerabilities-found-on-nichestack/

Attack Complexity

LOW

Privileges Required

NONE

User Interaction Required

NONE

Scope

NONE

Confidentiality Impact

UNCHANGED

Integrity Impact

HIGH

Availability Impact

NONE

Base Score

NONE

Base Severity

7.5

Share on: