First published: Mon Jun 21 2021(Updated: )
Invalid interval in CONNECT_IND leads to Division by Zero. Zephyr versions >= v1.14.0 Divide By Zero (CWE-369). For more information, see https://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-7364-p4wc-8mj4
Credit: vulnerabilities@zephyrproject.org
Affected Software | Affected Version | How to fix |
---|---|---|
Zephyrproject Zephyr | >=1.14.0<2.6.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-3432 is a vulnerability in Zephyr versions >= v1.14.0 that leads to a Division by Zero (CWE-369).
CVE-2021-3432 has a severity value of 7.5 (high).
Zephyr versions >= v1.14.0 and <= v2.6.0 are affected by CVE-2021-3432.
To fix CVE-2021-3432, it is recommended to upgrade Zephyr to a version higher than v2.6.0.
For more information about CVE-2021-3432, you can visit the Zephyr GitHub page: http://github.com/zephyrproject-rtos/zephyr/security/advisories/GHSA-7364-p4wc-8mj4.