CVE-2021-1434
published 2021-03-24CVE-2021-1434: A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to overwrite arbitrary files in the underlying file…
PriorityP431medium6CVSS 3.1
AVLACLPRHUINSUCNIHAH
EPSS
0.23%
13.8th percentile
A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to overwrite arbitrary files in the underlying file system. This vulnerability is due to insufficient validation of the parameters of a specific CLI command. An attacker could exploit this vulnerability by issuing that command with specific parameters. A successful exploit could allow the attacker to overwrite the content of any arbitrary file that resides on the underlying host file system.
Affected
29 ranges· showing 25
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| cisco | cisco_ios_xe_software | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
| cisco | ios_xe | — | — |
CVSS provenance
nvdv3.16.0MEDIUMCVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:H
nvdv2.06.6MEDIUMAV:L/AC:L/Au:N/C:N/I:C/A:C
vendor_cisco4.4MEDIUM
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-93v4-x3jr-8cfq: A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to overwrite arbitrary files in the underlying
ghsa_unreviewed·2022-05-24
CVE-2021-1434 [MEDIUM] CWE-552 GHSA-93v4-x3jr-8cfq: A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to overwrite arbitrary files in the underlying
A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to overwrite arbitrary files in the underlying file system. This vulnerability is due to insufficient validation of the parameters of a specific CLI command. An attacker could exploit this vulnerability by issuing that command with specific parameters. A successful exploit could allow the attacker to overwrite the content of any arbitrary file that resides on the underlying host file system.
Cisco
Cisco IOS XE SD-WAN Software Arbitrary File Corruption Vulnerability
vendor_cisco·2021-03-24·CVSS 4.4
CVE-2021-1434 [MEDIUM] CWE-552 Cisco IOS XE SD-WAN Software Arbitrary File Corruption Vulnerability
Cisco IOS XE SD-WAN Software Arbitrary File Corruption Vulnerability
A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to overwrite arbitrary files in the underlying file system.
This vulnerability is due to insufficient validation of the parameters of a specific CLI command. An attacker could exploit this vulnerability by issuing that command with specific parameters. A successful exploit could allow the attacker to overwrite the content of any arbitrary file that resides on the underlying host file system.
Cisco has released software updates that address this vulnerability. There are no workarounds that address this vulnerability.
This advisory is available at the following link:https://sec.cloudapps.cisco.com/security/center/conten
Cisco
Cisco IOS XE SD-WAN Software Arbitrary File Corruption Vulnerability
vendor_cisco·CVSS 3.1
CVE-2021-1434 Cisco IOS XE SD-WAN Software Arbitrary File Corruption Vulnerability
CVE-2021-1434: Cisco IOS XE SD-WAN Software Arbitrary File Corruption Vulnerability
A vulnerability in the CLI of Cisco IOS XE SD-WAN Software could allow an authenticated, local attacker to overwrite arbitrary files in the underlying file system. This vulnerability is due to insufficient validation of the parameters of a specific CLI command. An attacker could exploit this vulnerability by issuing that command with specific parameters. A successful exploit could allow the attacker to overwrite the content of any arbitrary file that resides on the underlying host file system. Cisco has released software updates that address this vulnerability. There are no
CVSS: 3.1
CWE: CWE-552, CWE-552
Bug IDs: CSCvu39228
No detection rules found.
No public exploits indexed.
Talos
Vulnerability Spotlight: Heap overflow in Sound Exchange libsox library
blogs_talos·2022-03-23·CVSS 8.8
[HIGH] Vulnerability Spotlight: Heap overflow in Sound Exchange libsox library
Lilith >_> of Cisco Talos discovered these vulnerabilities.
Cisco Talos recently discovered an exploitable heap-based buffer overflow vulnerability in the sphere.c start_read() functionality of Sound Exchange libsox.
The libsox library is a library of sound sample file format readers/writers and sound effects processors. It's been in development for several years, and now supports several file formats including .wav, .flac, and .mp3 (with the aid of an external library).
TALOS-2021-1434 (CVE-2021-40426) can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.
This vulnerability specifically exists in the way this library handles NIST Speech Header Resources (SPHERE) files, which are used for speech recognition.
Cisco Talos is releasin
Talos
Vulnerability Spotlight: Heap overflow in Sound Exchange libsox library
blogs_talos·2022-03-23·CVSS 8.8
[HIGH] Vulnerability Spotlight: Heap overflow in Sound Exchange libsox library
## Vulnerability Spotlight: Heap overflow in Sound Exchange libsox library
Lilith >_> of Cisco Talos discovered these vulnerabilities.
Cisco Talos recently discovered an exploitable heap-based buffer overflow vulnerability in the sphere.c start_read() functionality of Sound Exchange libsox.
The libsox library is a library of sound sample file format readers/writers and sound effects processors. It's been in development for several years, and now supports several file formats including .wav, .flac, and .mp3 (with the aid of an external library).
TALOS-2021-1434 (CVE-2021-40426) can lead to a heap buffer overflow. An attacker can provide a malicious file to trigger this vulnerability.
This vulnerability specifically exists in the way this library handles NIST Speech Header Resources (SP
2021-03-24
Published