#VU52217 Infinite loop in Siemens products - CVE-2021-25664
Published: April 14, 2021
Nucleus NET
Nucleus ReadyStart
Nucleus Source Code
VSTAR
Nucleus 4
Siemens
Description
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to the function that processes the hop-by-hop extension header in IPv6 packets and its options lacks any checks against the length field of the header. A remote attacker can consume all available system resources and cause denial of service conditions.