CVE-2021-20988: Hilscher rcX RTOS: Wrong handling of the UDP checksum
In Hilscher rcX RTOS versions prios to V2.1.14.1 the actual UDP packet length is not verified against the length indicated by the packet. This may lead to a denial of service of the affected device.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-20988?
CVE-2021-20988 is a vulnerability in Hilscher rcX RTOS versions prior to V2.1.14.1 that allows for a denial of service attack.
How severe is CVE-2021-20988?
CVE-2021-20988 has a severity rating of 7.5 (High).
Which software versions are affected by CVE-2021-20988?
Hilscher rcX RTOS versions up to and excluding V2.1.14.1 are affected by CVE-2021-20988.
How can I fix CVE-2021-20988?
To fix CVE-2021-20988, update your Hilscher rcX RTOS to version V2.1.14.1 or higher.
Where can I find more information about CVE-2021-20988?
You can find more information about CVE-2021-20988 at the following references: [link 1](https://cert.vde.com/de-de/advisories/vde-2021-018) and [link 2](https://kb.hilscher.com/display/ISMS/2019-04-10+Wrong+handling+of+the+UDP+checksum).