CVE-2021-41497

Published: Dic 17, 2021 Last Modified: Nov 21, 2024 EU-VD ID: EUVD-2021-0472 Aliases: PYSEC-2021-880
ExploitDB:
Other exploit source:
Google Dorks:
HIGH 7,5
Attack Vector: network
Attack Complexity: low
Privileges Required: none
User Interaction: none
Scope: unchanged
Confidentiality: none
Integrity: none
Availability: high
MEDIUM 5,0
Access Vector: network
Access Complexity: low
Authentication: none
Confidentiality: none
Integrity: none
Availability: partial

Description

AI Translation Available

Null pointer reference in CMS_Conservative_increment_obj in RaRe-Technologies bounter version 1.01 and 1.10, allows attackers to conduct Denial of Service attacks by inputting a huge width of hash bucket.

EPSS (Exploit Prediction Scoring System)

Trend Analysis

EPSS (Exploit Prediction Scoring System)

Prevede la probabilità di sfruttamento basata su intelligence sulle minacce e sulle caratteristiche della vulnerabilità.

EPSS Score
0,0028
Percentile
0,5th
Updated

EPSS Score Trend (Last 90 Days)

476

NULL Pointer Dereference

Stable
Common Consequences
Security Scopes Affected:
Availability Integrity Confidentiality
Potential Impacts:
Dos: Crash, Exit, Or Restart Execute Unauthorized Code Or Commands Read Memory Modify Memory
Applicable Platforms
Languages: C, C#, C++, Go, Java
View CWE Details
Application

Bounter by Rare-Technologies

cpe:2.3:a:rare-technologies:bounter:1.01:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
Application

Bounter by Rare-Technologies

cpe:2.3:a:rare-technologies:bounter:1.10:*:*:*:*:*:*:*
Common Platform Enumeration - Standardized vulnerability identification
https://github.com/RaRe-Technologies/bounter/issues/47
Exploit Issue Tracking Third Party Advisory
https://github.com/RaRe-Technologies/bounter/issues/47
https://github.com/RaRe-Technologies/bounter/issues/47
Exploit Issue Tracking Third Party Advisory
https://github.com/RaRe-Technologies/bounter/issues/47