A buffer overflow vulnerability in stm32_mw_usb_host of STMicroelectronics in versions before 3.5.1 allows an attacker to execute arbitrary code when the descriptor contains more endpoints than USBH_MAX_NUM_ENDPOINTS. The library is typically integrated when using a RTOS such as FreeRTOS on STM32 MCUs.
Metrics
Affected Vendors & Products
References
History
Wed, 07 May 2025 20:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|

Status: PUBLISHED
Assigner: NCSC.ch
Published:
Updated: 2025-05-07T20:10:49.445Z
Reserved: 2021-10-15T00:00:00.000Z
Link: CVE-2021-42553

Updated: 2024-08-04T03:38:49.280Z

Status : Modified
Published: 2022-10-21T10:15:12.470
Modified: 2025-05-07T21:15:53.440
Link: CVE-2021-42553

No data.