CVE-2021-38258: Buffer Overflow
Published Oct 25, 2021
·Updated
NXP MCUXpresso SDK v2.7.0 was discovered to contain a buffer overflow in the function USBHostProcessCallback().
Affected Software
1 affected component
NXP Mcuxpresso Software Development Kit=2.7.0
Event History
Oct 25, 2021
CVE Published
via MITRE·09:19 PM
Data Sourced
via MITRE·09:19 PM
Description
Frequently Asked Questions
1
What is CVE-2021-38258?
CVE-2021-38258 is a vulnerability discovered in NXP MCUXpresso SDK v2.7.0 that allows for buffer overflow in the function USB_HostProcessCallback().
2
How severe is CVE-2021-38258?
CVE-2021-38258 has a severity score of 7.8, which is considered high.
3
What software is affected by CVE-2021-38258?
NXP MCUXpresso SDK version 2.7.0 is affected by CVE-2021-38258.
4
How can I fix CVE-2021-38258?
To fix CVE-2021-38258, it is recommended to update NXP MCUXpresso SDK to a version that has addressed the vulnerability.
5
Where can I find more information about CVE-2021-38258?
You can find more information about CVE-2021-38258 at the following reference: https://mcusec.github.io/vulnerabilities_details#nxp_usb