CVE-2021-21950: Buffer Overflow
An out-of-bounds write vulnerability exists in the CMDDEVICEGETSERVERLISTREQUEST functionality of the homesecurity binary of Anker Eufy Homebase 2 2.1.6.9h in function recvserverdeviceresponsemsgprocess. A specially-crafted network packet can lead to code execution.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-21950?
CVE-2021-21950 is classified as a critical vulnerability due to the potential for remote code execution.
How do I fix CVE-2021-21950?
To mitigate CVE-2021-21950, update the Anker Eufy Homebase 2 firmware to a patched version provided by the manufacturer.
What types of devices are affected by CVE-2021-21950?
CVE-2021-21950 specifically affects the Anker Eufy Homebase 2 running firmware version 2.1.6.9h.
What happens if CVE-2021-21950 is exploited?
Exploiting CVE-2021-21950 can result in an out-of-bounds write leading to unauthorized code execution on the device.
Is CVE-2021-21950 a local or remote vulnerability?
CVE-2021-21950 is a remote vulnerability, which can be triggered by sending specially crafted network packets.