← volver
CVE-2021-3436mediumCWE-694

BT: Possible to overwrite an existing bond during keys distribution phase when the identity address of the bond is known

13Vexday Risk Score

Sin señal de explotación. Ningún artefacto público de explotación conocido hasta ahora.

ssvc Trackcvss 4.3epss 1.0%
probabilidad de explotación
1.0%top 41% de las CVE
explotación observada
noninguna fuente lo reporta
BT: Possible to overwrite an existing bond during keys distribution phase when the identity address of the bond is known. Zephyr versions >= 1.14.2, >= 2.4.0, >= 2.5.0 contain Use of Multiple Resources with Duplicate Identifier (CWE-694). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-j76f-35mc-4h63
CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:L
Productos afectados
zephyrproject-rtos · zephyr