CVE-2021-38487

Severity CVSS v4.0:
HIGH
Type:
Unavailable / Other
Publication date:
05/05/2022
Last modified:
23/06/2025

Description

RTI Connext Professional versions 4.1 to 6.1.0, and Connext Micro versions 2.4 and later are vulnerable when an attacker sends a specially crafted packet to flood target devices with unwanted traffic. This may result in a denial-of-service condition and information exposure.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:rti:connext_dds_micro:*:*:*:*:*:*:*:* 2.4 (including)
cpe:2.3:a:rti:connext_professional:*:*:*:*:*:*:*:* 4.2 (including) 6.1.0 (excluding)
cpe:2.3:a:rti:connext_secure:*:*:*:*:*:*:*:* 4.2 (including) 6.1.0 (excluding)