CVE-2021-35977
Summary
| CVE | CVE-2021-35977 |
|---|---|
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-10-08 15:15:00 UTC |
| Updated | 2023-05-26 18:18:00 UTC |
| Description | An issue was discovered in Digi RealPort for Windows through 4.8.488.0. A buffer overflow exists in the handling of ADDP discovery response messages. This could result in arbitrary code execution. |
Risk And Classification
Problem Types: CWE-120
NVD Known Affected Configurations (CPE 2.3)
| Type | Vendor | Product | Version | Update | Edition | Language |
|---|---|---|---|---|---|---|
| Hardware | Digi | 6350-sr | - | All | All | All |
| Operating System | Digi | 6350-sr Firmware | All | All | All | All |
| Hardware | Digi | Cm | - | All | All | All |
| Operating System | Digi | Cm Firmware | All | All | All | All |
| Hardware | Digi | Connectcore 8x | - | All | All | All |
| Operating System | Digi | Connectcore 8x Firmware | All | All | All | All |
| Hardware | Digi | Connectport Lts 8/16/32 | - | All | All | All |
| Operating System | Digi | Connectport Lts 8/16/32 Firmware | All | All | All | All |
| Hardware | Digi | Connectport Ts 8/16 | - | All | All | All |
| Operating System | Digi | Connectport Ts 8/16 Firmware | All | All | All | All |
| Hardware | Digi | Connect Es | - | All | All | All |
| Operating System | Digi | Connect Es Firmware | All | All | All | All |
| Hardware | Digi | One Ia | - | All | All | All |
| Hardware | Digi | One Iap Family | - | All | All | All |
| Operating System | Digi | One Iap Family Firmware | All | All | All | All |
| Operating System | Digi | One Ia Firmware | All | All | All | All |
| Hardware | Digi | Passport Integrated Console Server | - | All | All | All |
| Operating System | Digi | Passport Integrated Console Server Firmware | All | All | All | All |
| Hardware | Digi | Portserver Ts | - | All | All | All |
| Operating System | Digi | Portserver Ts Firmware | All | All | All | All |
| Hardware | Digi | Portserver Ts Mei | - | All | All | All |
| Operating System | Digi | Portserver Ts Mei Firmware | All | All | All | All |
| Hardware | Digi | Portserver Ts Mei Hardened | - | All | All | All |
| Operating System | Digi | Portserver Ts Mei Hardened Firmware | All | All | All | All |
| Hardware | Digi | Portserver Ts M Mei | - | All | All | All |
| Operating System | Digi | Portserver Ts M Mei Firmware | All | All | All | All |
| Hardware | Digi | Portserver Ts P Mei | - | All | All | All |
| Operating System | Digi | Portserver Ts P Mei Firmware | All | All | All | All |
| Application | Digi | Realport | All | All | All | All |
| Application | Digi | Realport | All | All | All | All |
| Hardware | Digi | Transport Wr11 Xt | - | All | All | All |
| Operating System | Digi | Transport Wr11 Xt Firmware | All | All | All | All |
| Hardware | Digi | Wr21 | - | All | All | All |
| Operating System | Digi | Wr21 Firmware | All | All | All | All |
| Hardware | Digi | Wr31 | - | All | All | All |
| Operating System | Digi | Wr31 Firmware | All | All | All | All |
| Hardware | Digi | Wr44 R | - | All | All | All |
| Operating System | Digi | Wr44 R Firmware | All | All | All | All |
References
| Reference | Source | Link | Tags |
|---|---|---|---|
| raw.githubusercontent.com/reidmefirst/vuln-disclosure/main/2021-02.txt | MISC | raw.githubusercontent.com | |
| CVE Program record | CVE.ORG | www.cve.org | canonical |
| NVD vulnerability detail | NVD | nvd.nist.gov | canonical, analysis |
No vendor comments have been submitted for this CVE.
There are currently no legacy QID mappings associated with this CVE.