CVE-2021-27790
12.08.2021, 15:15
The command ipfilter in Brocade Fabric OS before Brocade Fabric OS v.9.0.1a, v8.2.3, and v8.2.0_CBN4, and v7.4.2h uses unsafe string function to process user input. Authenticated attackers can abuse this vulnerability to exploit stack-based buffer overflows, allowing execution of arbitrary code as the root user account.Enginsight
Vendor | Product | Version |
---|---|---|
broadcom | fabric_operating_system | 𝑥 < 7.4.2h |
broadcom | fabric_operating_system | 8.0.0 ≤ 𝑥 < 8.2.0_cbn4 |
broadcom | fabric_operating_system | 8.2.1 ≤ 𝑥 < 8.2.3 |
broadcom | fabric_operating_system | 9.0.0 ≤ 𝑥 < 9.0.1a |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References