CVE-2021-30129

A vulnerability in sshd-core of Apache Mina SSHD allows an attacker to overflow the server causing an OutOfMemory error. This issue affects the SFTP and port forwarding features of Apache Mina SSHD version 2.0.0 and later versions. It was addressed in Apache Mina SSHD 2.7.0
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTNIST
6.5 MEDIUM
NETWORK
LOW
LOW
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:H
apacheCNA
---
---
CVEADP
---
---
Base Score
CVSS 3.x
EPSS Score
Percentile: 50%
VendorProductVersion
apachesshd
2.0.0 ≤
𝑥
< 2.7.0
oraclebanking_payments
14.5
oraclebanking_trade_finance
14.5
oraclebanking_treasury_management
14.5
oraclecommunications_cloud_native_core_console
1.9.0
oracleflexcube_universal_banking
14.0.0 ≤
𝑥
≤ 14.3.0
oracleflexcube_universal_banking
14.5
oraclemiddleware_common_libraries_and_tools
12.2.1.3.0
oraclemiddleware_common_libraries_and_tools
12.2.1.4.0
oraclemiddleware_common_libraries_and_tools
14.1.1.0.0
oracleoss_support_tools
2.12.42
oracleretail_customer_management_and_segmentation_foundation
18.0
oracleretail_customer_management_and_segmentation_foundation
19.0
𝑥
= Vulnerable software versions