CVE-2021-21723
Published Jan 26, 2021
Last updated 4 years ago
Overview
- Description
- Some ZTE products have a DoS vulnerability. Due to the improper handling of memory release in some specific scenarios, a remote attacker can trigger the vulnerability by performing a series of operations, resulting in memory leak, which may eventually lead to device denial of service. This affects: ZXR10 9904, ZXR10 9908, ZXR10 9916, ZXR10 9904-S, ZXR10 9908-S; all versions up to V1.01.10.B12.
- Source
- psirt@zte.com.cn
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 3.1
- Type
- Primary
- Base score
- 7.5
- Impact score
- 3.6
- Exploitability score
- 3.9
- Vector string
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- Severity
- HIGH
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 2.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:N/I:N/A:P
Weaknesses
- nvd@nist.gov
- CWE-401
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:zte:zxr10_9904:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "D1747E7A-AB46-4D3C-BD82-659DAA58C43A" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:zte:zxr10_9904_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4944E354-3041-46F1-A74B-82CC750273D8", "versionEndIncluding": "v1.01.10.b12" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:zte:zxr10_9908:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "F83A1243-E923-4735-AC8D-875605530747" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:zte:zxr10_9908_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "722F3591-8D28-4D42-BF33-C67169F21BC3", "versionEndIncluding": "v1.01.10.b12" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:zte:zxr10_9916:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "E1DE8F4A-8A42-4C1C-82EA-85543F5E805D" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:zte:zxr10_9916_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2F35755D-7919-4CC5-B9CA-E88FD4483D4C", "versionEndIncluding": "v1.01.10.b12" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:zte:zxr10_9904-s:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "78D0B84F-0C58-41C3-8083-BD74E9D0118D" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:zte:zxr10_9904-s_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "85884147-B665-404A-8117-4519732F7C1D", "versionEndIncluding": "v1.01.10.b12" } ], "operator": "OR" } ], "operator": "AND" }, { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:h:zte:zxr10_9908-s:-:*:*:*:*:*:*:*", "vulnerable": false, "matchCriteriaId": "813FBCBD-4900-49C7-B0E2-C75DD3788694" } ], "operator": "OR" }, { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:o:zte:zxr10_9908-s_firmware:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0602358F-5958-4172-AB42-8C77853A5347", "versionEndIncluding": "v1.01.10.b12" } ], "operator": "OR" } ], "operator": "AND" } ]