First published: Mon May 10 2021(Updated: )
Improper validation of the ChassisID TLV in userdisk/vport_lldpd in Moxa Camera VPort 06EC-2V Series, version 1.1, allows attackers to cause a denial of service due to a negative number passed to the memcpy function via a crafted lldp packet.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Moxa VPort 06EC-2V26M | <=1.1 | |
Moxa VPort 06EC-2V26M | ||
Moxa Vport 06ec-2v36m-t Firmware | <=1.1 | |
Moxa Vport 06ec-2v36m-t Firmware | ||
Moxa Vport 06ec-2v36m-ct-t Firmware | <=1.1 | |
Moxa Vport 06ec-2v36m-ct-t Firmware | ||
Moxa Vport 06ec-2v36m-ct-t Firmware | <=1.1 | |
Moxa Vport 06ec-2v36m-ct-t Firmware | ||
Moxa Vport 06ec-2v42m Firmware | <=1.1 | |
Moxa Vport 06ec-2v42m Firmware | ||
Moxa Vport 06ec-2v42m-t Firmware | <=1.1 | |
Moxa Vport 06ec-2v42m-t Firmware | ||
Moxa Vport 06ec-2v42m-ct-t Firmware | <=1.1 | |
Moxa VPort 06EC-2V42M-CT | ||
Moxa Vport 06ec-2v42m-t Firmware | <=1.1 | |
Moxa Vport 06ec-2v42m-ct-t Firmware | ||
Moxa Vport 06ec-2v60m-t Firmware | <=1.1 | |
Moxa Vport 06ec-2v60m-t Firmware | ||
Moxa Vport 06ec-2v60m-t Firmware | <=1.1 | |
Moxa Vport 06ec-2v60m-t Firmware | ||
Moxa Vport 06ec-2v60m-ct-t | <=1.1 | |
Moxa Vport 06ec-2v60m-ct-t | ||
Moxa Vport 06ec-2v60m-ct Firmware | <=1.1 | |
Moxa VPort 06EC-2V60M-CT-T Firmware | ||
Moxa Vport 06ec-2v80m-t Firmware | <=1.1 | |
Moxa Vport 06ec-2v80m-t Firmware | ||
Moxa Vport 06ec-2v80m-t Firmware | <=1.1 | |
Moxa Vport 06ec-2v80m-t Firmware | ||
Moxa Vport 06ec-2v80m Firmware | <=1.1 | |
Moxa Vport 06ec-2v80m Firmware | ||
Moxa Vport 06ec-2v80m-ct-t | <=1.1 | |
Moxa Vport 06ec-2v80m-ct-t Firmware |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-25846 has been classified as a high severity vulnerability due to its potential to cause denial of service.
To fix CVE-2021-25846, update to the latest firmware version available for the affected Moxa VPort 06EC-2V Series cameras.
CVE-2021-25846 affects Moxa VPort 06EC-2V Series cameras running firmware version 1.1 or earlier.
CVE-2021-25846 does not lead to unauthorized access but can cause a denial of service which disrupts normal operation.
CVE-2021-25846 can be exploited through a crafted LLDP packet that triggers a negative value in the memcpy function.