CVE-2021-38447: OCI OpenDDS Secure Amplification
OCI OpenDDS versions prior to 3.18.1 are vulnerable when an attacker sends a specially crafted packet to flood target devices with unwanted traffic, which may result in a denial-of-service condition.
Affected Software
Remediation
Information
Event History
Frequently Asked Questions
What is CVE-2021-38447?
CVE-2021-38447 is a vulnerability in OCI OpenDDS versions prior to 3.18.1 that allows an attacker to flood target devices with specially crafted packets, potentially causing a denial-of-service condition.
How does CVE-2021-38447 impact the affected software?
CVE-2021-38447 allows an attacker to send specially crafted packets to flood target devices, potentially resulting in a denial-of-service condition.
What is the severity of CVE-2021-38447?
CVE-2021-38447 has a severity rating of high, with a score of 7.5.
How can I fix CVE-2021-38447 vulnerability?
To fix the CVE-2021-38447 vulnerability, it is recommended to upgrade to OCI OpenDDS version 3.18.1 or later.
Where can I find more information about CVE-2021-38447?
More information about CVE-2021-38447 can be found at the official OpenDDS website (https://opendds.org/) and the CISA website (https://www.cisa.gov/uscert/ics/advisories/icsa-21-315-02).