First published: Mon Oct 25 2021(Updated: )
NXP MCUXpresso SDK v2.7.0 was discovered to contain a buffer overflow in the function USB_HostProcessCallback().
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Nxp Mcuxpresso Software Development Kit | =2.7.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-38258 is a vulnerability discovered in NXP MCUXpresso SDK v2.7.0 that allows for buffer overflow in the function USB_HostProcessCallback().
CVE-2021-38258 has a severity score of 7.8, which is considered high.
NXP MCUXpresso SDK version 2.7.0 is affected by CVE-2021-38258.
To fix CVE-2021-38258, it is recommended to update NXP MCUXpresso SDK to a version that has addressed the vulnerability.
You can find more information about CVE-2021-38258 at the following reference: https://mcusec.github.io/vulnerabilities_details#nxp_usb