CVE-2021-35969: Input Validation
Published Jan 15, 2022
·Updated
Pexip Infinity before 26 allows temporary remote Denial of Service (abort) because of missing call-setup input validation.
Affected Software
1 affected component
Pexip Infinity>=22.0<26
Event History
Jan 15, 2022
CVE Published
via MITRE·04:25 PM
Data Sourced
via MITRE·04:25 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-35969?
The severity of CVE-2021-35969 is rated as medium due to its potential to cause temporary remote Denial of Service.
2
How do I fix CVE-2021-35969?
To fix CVE-2021-35969, upgrade to Pexip Infinity version 26 or later, which includes necessary input validation for call setups.
3
What versions of Pexip Infinity are affected by CVE-2021-35969?
Pexip Infinity versions between 22.0 and 25 are affected by CVE-2021-35969.
4
What type of vulnerability is CVE-2021-35969?
CVE-2021-35969 is a Denial of Service vulnerability caused by missing input validation during call setup.
5
Is there a workaround for CVE-2021-35969?
There are no recommended workarounds for CVE-2021-35969; upgrading to the fixed version is the best solution.