CVE-2021-31617: Buffer Overflow
Published Jan 31, 2022
·Updated
In ASQ in Stormshield Network Security (SNS) 1.0.0 through 2.7.8, 2.8.0 through 2.16.0, 3.0.0 through 3.7.20, 3.8.0 through 3.11.8, and 4.0.1 through 4.2.2, mishandling of memory management can lead to remote code execution.
Affected Software
8 affected components
Stormshield Network Security>=1.0.0<2.7.9
Stormshield Network Security>=2.8.0<3.7.21
Stormshield Network Security>=3.8.0<3.11.9
Stormshield Network Security>=4.0.1<4.2.3
Stormshield Stormshield Network Security>=1.0.0<2.7.9
Stormshield Stormshield Network Security>=2.8.0<3.7.21
Stormshield Stormshield Network Security>=3.8.0<3.11.9
Stormshield Stormshield Network Security>=4.0.1<4.2.3
Event History
Jan 31, 2022
CVE Published
via MITRE·03:16 PM
Data Sourced
via MITRE·03:16 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-31617.
2
What is the severity of CVE-2021-31617?
The severity of CVE-2021-31617 is critical with a CVSS score of 9.8.
3
Which software versions are affected by CVE-2021-31617?
CVE-2021-31617 affects Stormshield Network Security versions 1.0.0 to 2.7.8, 2.8.0 to 2.16.0, 3.0.0 to 3.7.20, 3.8.0 to 3.11.8, and 4.0.1 to 4.2.2.
4
What is the impact of CVE-2021-31617?
CVE-2021-31617 can lead to remote code execution due to mishandling of memory management.
5
Where can I find more information about CVE-2021-31617?
You can find more information about CVE-2021-31617 on the Stormshield Network Security advisories page at https://advisories.stormshield.eu/2021-020/.