LOW · 3.3

CVE-2021-22303

There is a pointer double free vulnerability in Taurus-AL00A 10.0.0.1(C00E1R1P1). There is a lack of muti-thread protection when a function is called. Attackers can exploit this vulnerability by perfo...

Vulnerability Description

There is a pointer double free vulnerability in Taurus-AL00A 10.0.0.1(C00E1R1P1). There is a lack of muti-thread protection when a function is called. Attackers can exploit this vulnerability by performing malicious operation to cause pointer double free. This may lead to module crash, compromising normal service.

CVSS Score

3.3

LOW

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:L
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality
NONE
Integrity
NONE
Availability
LOW

Affected Products

VendorProductVersions
HuaweiTaurus-Al00A Firmware10.0.0.1\(c00e1r1p1\)
HuaweiTaurus-Al00A-

Related Weaknesses (CWE)

References

FAQ

What is CVE-2021-22303?

CVE-2021-22303 is a vulnerability with a CVSS score of 3.3 (LOW). There is a pointer double free vulnerability in Taurus-AL00A 10.0.0.1(C00E1R1P1). There is a lack of muti-thread protection when a function is called. Attackers can exploit this vulnerability by perfo...

How severe is CVE-2021-22303?

CVE-2021-22303 has been rated LOW with a CVSS base score of 3.3/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2021-22303?

Check the references section above for vendor advisories and patch information. Affected products include: Huawei Taurus-Al00A Firmware, Huawei Taurus-Al00A.