CVE-2021-38387 Information

Description

In Contiki 3.0 a Telnet server that silently quits (before disconnection with clients) leads to connected clients entering an infinite loop and waiting forever which may cause excessive CPU consumption.

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

Reference

https://github.com/contiki-os/contiki/issues/2688

Attack Complexity

LOW

Privileges Required

NONE

User Interaction Required

NONE

Scope

NONE

Confidentiality Impact

UNCHANGED

Integrity Impact

NONE

Availability Impact

NONE

Base Score

HIGH

Base Severity

7.5

Share on: