CVE-2021-27697: Buffer Overflow
Published Apr 6, 2021
·Updated
RIOT-OS 2021.01 contains a buffer overflow vulnerability in sys/net/gnrc/routing/rpl/gnrcrplvalidation.c through the gnrcrplvalidationoptions() function.
Affected Software
1 affected component
RIOT-OS RIOT=2021.01
Event History
Apr 6, 2021
CVE Published
via MITRE·12:07 PM
Data Sourced
via MITRE·12:07 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-27697?
CVE-2021-27697 has a medium severity rating due to its potential for triggering buffer overflow vulnerabilities.
2
How do I fix CVE-2021-27697?
To mitigate CVE-2021-27697, upgrade to a patched version of RIOT-OS that addresses the buffer overflow issue.
3
What systems are affected by CVE-2021-27697?
CVE-2021-27697 specifically affects RIOT-OS version 2021.01.
4
What functions are involved in CVE-2021-27697?
CVE-2021-27697 involves the gnrc_rpl_validation_options() function located in the gnrc/rpl/gnrc_rpl_validation.c file.
5
How can I check if my system is vulnerable to CVE-2021-27697?
To check for vulnerability to CVE-2021-27697, verify if your system is using RIOT-OS version 2021.01.