CVE-2021-25667

HIGHCVSS 8.8/10EPSS 0.85%

Last modified

CVE-2021-25667 is a high-severity vulnerability rated 8.8/10 on the CVSS scale. A vulnerability has been identified in RUGGEDCOM RM1224 (All versions >= V4.3 and < V6.4), SCALANCE M-800 (All versions >= V4.3 and < V6.4), SCALANCE S615 (All versions >= V4.3 and < V6.4), SCALANCE SC-600 Family (All versions >= V2.0 and < V2.1.3), SCALANCE XB-200 (All versions < V4.1), SCALANCE XC-200 (All versions < V4.1), SCALANCE XF-200BA (All versions < V4.1), SCALANCE XM400 (All versions < V6.2), SCALANCE XP-200 (All versions < V4.1), SCALANCE XR-300WG (All versions < V4.1), SCALANCE XR500 (All versions < V6.2). Affected devices contain a stack-based buffer overflow vulnerability in the handling of STP BPDU frames that could allow a remote attacker to trigger a denial-of-service condition or potentially remote code execution. EPSS estimates a 0.85% chance of exploitation in the next 30 days.

Description

A vulnerability has been identified in RUGGEDCOM RM1224 (All versions >= V4.3 and < V6.4), SCALANCE M-800 (All versions >= V4.3 and < V6.4), SCALANCE S615 (All versions >= V4.3 and < V6.4), SCALANCE SC-600 Family (All versions >= V2.0 and < V2.1.3), SCALANCE XB-200 (All versions < V4.1), SCALANCE XC-200 (All versions < V4.1), SCALANCE XF-200BA (All versions < V4.1), SCALANCE XM400 (All versions < V6.2), SCALANCE XP-200 (All versions < V4.1), SCALANCE XR-300WG (All versions < V4.1), SCALANCE XR500 (All versions < V6.2). Affected devices contain a stack-based buffer overflow vulnerability in the handling of STP BPDU frames that could allow a remote attacker to trigger a denial-of-service condition or potentially remote code execution. Successful exploitation requires the passive listening feature of the device to be active.

Metrics

CVSS 3.1
8.8/10

CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

EPSS Probability
0.85%

53.5th percentile

Probability of exploitation in the next 30 days. Learn more

Weakness Enumeration

Affected Software

VendorProductVersions
SiemensRuggedcom Rm1224 Firmware>= 4.3, < 6.4
SiemensScalance M-800 Firmware>= 4.3, < 6.4
SiemensScalance S615 Firmware>= 4.3, < 6.4
SiemensScalance X300wg Firmware< 4.1
SiemensScalance Xm400 Firmware< 6.2
SiemensScalance Xr500 Firmware< 6.2
SiemensScalance Sc622-2c Firmware<= 2.0
SiemensScalance Sc622-2c Firmware>= 2.1, < 2.1.3
SiemensScalance Sc632-2c Firmware<= 2.0
SiemensScalance Sc632-2c Firmware>= 2.1, < 2.1.3
SiemensScalance Sc636-2c Firmware<= 2.0
SiemensScalance Sc636-2c Firmware>= 2.1, < 2.1.3
SiemensScalance Sc642-2c Firmware<= 2.0
SiemensScalance Sc642-2c Firmware>= 2.1, < 2.1.3
SiemensScalance Sc646-2c Firmware<= 2.0
SiemensScalance Sc646-2c Firmware>= 2.1, < 2.1.3
SiemensScalance Xb-200 Firmware< 4.1
SiemensScalance Xc-200 Firmware< 4.1
SiemensScalance Xf-200ba Firmware< 4.1
SiemensScalance Xp-200 Firmware< 4.1

References

Timeline

Published
Last Modified
Status
Modified

Frequently Asked Questions

What is CVE-2021-25667?
A vulnerability has been identified in RUGGEDCOM RM1224 (All versions >= V4.3 and < V6.4), SCALANCE M-800 (All versions >= V4.3 and < V6.4), SCALANCE S615 (All versions >= V4.3 and < V6.4), SCALANCE SC-600 Family (All versions >= V2.0 and < V2.1.3), SCALANCE XB-200 (All versions < V4.1), SCALANCE XC-200 (All versions < V4.1), SCALANCE XF-200BA (All versions < V4.1), SCALANCE XM400 (All versions < V6.2), SCALANCE XP-200 (All versions < V4.1), SCALANCE XR-300WG (All versions < V4.1), SCALANCE XR500 (All versions < V6.2). Affected devices contain a stack-based buffer overflow vulnerability in the handling of STP BPDU frames that could allow a remote attacker to trigger a denial-of-service condition or potentially remote code execution. Successful exploitation requires the passive listening feature of the device to be active.
How severe is CVE-2021-25667?
CVE-2021-25667 has a CVSS score of 8.8/10 (HIGH severity). The EPSS model estimates a 0.85% probability of exploitation in the next 30 days.
How do I fix CVE-2021-25667?
Check the vendor references and advisories linked above for patched versions and mitigation guidance. You can also run a Strix scan to test if your systems are affected.

Are you affected by CVE-2021-25667?

Run a free Strix scan to check your systems for this vulnerability.

Scan your code now

Source: NVD / NIST