CVE-2022-21742
Published: Jun 20, 2022
Modified: Sep 17, 2024
CVSS v3.1
6.2
Description
Realtek USB driver has a buffer overflow vulnerability due to insufficient parameter length verification in the API function. An unauthenticated LAN attacker can exploit this vulnerability to disrupt services.
| Vendor | Product | Versions |
|---|---|---|
Realtek | USB FE/1GbE/2.5GbE/5GbE NIC Family | affected 10.28 - <= 10.39 |
Realtek | USB FE/1GbE/2.5GbE/5GbE NIC Family | affected 8.49 - <= 8.60 |
Realtek | USB FE/1GbE/2.5GbE/5GbE NIC Family | affected 7.42 - <= 7.53 |
Weaknesses (CWE)
CVSS v3.1 Details
CVSS v3.1 Vector
CVSS:3.1/AV:L/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
Attack Vector
Attack Complexity
Privileges Required
User Interaction
Scope
Confidentiality
Integrity
Availability
References
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now