CVE-2021-34262: Buffer Overflow
Published Jul 22, 2021
·Updated
A buffer overflow vulnerability in the USBHParseEPDesc() function of STMicroelectronics STM32Cube Middleware v1.8.0 and below allows attackers to execute arbitrary code.
Affected Software
2 affected components
ST STM32Cube Middleware<=1.8.0
ST Stm32h7b3
Event History
Jul 22, 2021
CVE Published
via MITRE·07:40 PM
Data Sourced
via MITRE·07:40 PM
Description
Frequently Asked Questions
1
What is the vulnerability ID for this buffer overflow vulnerability?
The vulnerability ID for this buffer overflow vulnerability is CVE-2021-34262.
2
What is the affected software version?
The affected software version is STMicroelectronics STM32Cube Middleware v1.8.0 and below.
3
What is the severity rating of this vulnerability?
The severity rating of this vulnerability is medium (CVSS score: 6.8).
4
How can attackers exploit this vulnerability?
Attackers can exploit this vulnerability to execute arbitrary code.
5
Is STMicroelectronics STM32h7b3 affected by this vulnerability?
No, STMicroelectronics STM32h7b3 is not affected by this vulnerability.