CVE-2021-20988

HIGH

Hilscher rcX RTOS < 2.1.14.1 - Denial of Service via UDP Packet Length Mismatch

Title source: llm
STIX 2.1

Description

In Hilscher rcX RTOS versions prios to V2.1.14.1 the actual UDP packet length is not verified against the length indicated by the packet. This may lead to a denial of service of the affected device.

References (2)

Core 2
Core References
Third Party Advisory x_refsource_confirm
https://cert.vde.com/de-de/advisories/vde-2021-018

Scores

CVSS v3 8.6
EPSS 0.0099
EPSS Percentile 58.1%
Attack Vector NETWORK
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:N/A:H

Details

CWE
CWE-119
Status published
Products (9)
hilscher/rcx_rtos < 2.1.14.1
pepperl-fuchs/ice1-16di-g60l-v1d_firmware < f10017
pepperl-fuchs/ice1-16dio-g60l-c1-v1d_firmware < f10017
pepperl-fuchs/ice1-16dio-g60l-v1d_firmware < f10017
pepperl-fuchs/ice1-8di8do-g60l-c1-v1d_firmware < f10017
pepperl-fuchs/ice1-8di8do-g60l-v1d_firmware < f10017
pepperl-fuchs/ice1-8iol-g30l-v1d_firmware < f10017
pepperl-fuchs/ice1-8iol-g60l-v1d_firmware < f10017
pepperl-fuchs/ice1-8iol-s2-g60l-v1d_firmware < f10017
Published May 13, 2021
Tracked Since Feb 18, 2026