Vulnerability Description
Parrot AR.Drone version 1 and 2 does not employ a suitable mechanism to prevent denial-of-service (DoS) attacks. An attacker can harm the device availability (i.e., video streaming and control) by using tool to perform an IPv4 flood attack. Verified attacks includes SYN flooding and UDP flooding.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- https://github.com/gubertoli/cve/tree/main/CVE-2021-44320
- https://www.researchgate.net/publication/257681090_ARDrone_corruption
- https://www.researchgate.net/publication/313177418_The_Impact_of_DoS_Attacks_on_
FAQ
What is CVE-2021-44320?
CVE-2021-44320 is a vulnerability with a CVSS score of 7.5 (HIGH). Parrot AR.Drone version 1 and 2 does not employ a suitable mechanism to prevent denial-of-service (DoS) attacks. An attacker can harm the device availability (i.e., video streaming and control) by usi...
How severe is CVE-2021-44320?
CVE-2021-44320 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2021-44320?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.