CVE-2021-32020: Buffer Overflow
Published May 3, 2021
·Updated
The kernel in Amazon Web Services FreeRTOS before 10.4.3 has insufficient bounds checking during management of heap memory.
Affected Software
1 affected component
Amazon FreeRTOS<10.4.3
Remediation
Event History
May 3, 2021
CVE Published
via MITRE·09:12 PM
Data Sourced
via MITRE·09:12 PM
Description
Frequently Asked Questions
1
What is CVE-2021-32020?
CVE-2021-32020 is a vulnerability in the kernel of Amazon Web Services FreeRTOS before version 10.4.3 that allows for insufficient bounds checking during management of heap memory.
2
How severe is CVE-2021-32020?
CVE-2021-32020 has a severity score of 9.8, which is classified as critical.
3
Which software versions are affected by CVE-2021-32020?
CVE-2021-32020 affects Amazon Web Services FreeRTOS versions up to but not including 10.4.3.
4
How can I fix CVE-2021-32020?
To fix CVE-2021-32020, update your Amazon Web Services FreeRTOS to version 10.4.3 or later.
5
Is there any additional information about CVE-2021-32020?
Additional information about CVE-2021-32020 can be found at the following reference: https://github.com/FreeRTOS/FreeRTOS-Kernel/commit/c7a9a01c94987082b223d3e59969ede64363da63