CVE-2021-29219

A potential local buffer overflow vulnerability has been identified in HPE FlexNetwork 5130 EL Switch Series version: Prior to 5130_EI_7.10.R3507P02. HPE has made the following software update to resolve the vulnerability in HPE FlexNetwork 5130 EL Switch Series version 5130_EL_7.10.R3507P02.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:hpe:flexnetwork_5130_jg932a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hpe:flexnetwork_5130_jg932a:-:*:*:*:*:*:*:*

Configuration 2 (hide)

AND
cpe:2.3:o:hpe:flexnetwork_5130_jg933a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hpe:flexnetwork_5130_jg933a:-:*:*:*:*:*:*:*

Configuration 3 (hide)

AND
cpe:2.3:o:hpe:flexnetwork_5130_jg934a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hpe:flexnetwork_5130_jg934a:-:*:*:*:*:*:*:*

Configuration 4 (hide)

AND
cpe:2.3:o:hpe:flexnetwork_5130_jg936a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hpe:flexnetwork_5130_jg936a:-:*:*:*:*:*:*:*

Configuration 5 (hide)

AND
cpe:2.3:o:hpe:flexnetwork_5130_jg937a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hpe:flexnetwork_5130_jg937a:-:*:*:*:*:*:*:*

Configuration 6 (hide)

AND
cpe:2.3:o:hpe:flexnetwork_5130_jg940a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hpe:flexnetwork_5130_jg940a:-:*:*:*:*:*:*:*

Configuration 7 (hide)

AND
cpe:2.3:o:hpe:flexnetwork_5130_jg941a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hpe:flexnetwork_5130_jg941a:-:*:*:*:*:*:*:*

History

09 Feb 2022, 20:22

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : 4.6
v3 : 7.8
CWE CWE-120
First Time Hpe flexnetwork 5130 Jg933a
Hpe flexnetwork 5130 Jg934a
Hpe flexnetwork 5130 Jg937a Firmware
Hpe flexnetwork 5130 Jg941a Firmware
Hpe flexnetwork 5130 Jg934a Firmware
Hpe flexnetwork 5130 Jg940a
Hpe flexnetwork 5130 Jg936a Firmware
Hpe flexnetwork 5130 Jg936a
Hpe flexnetwork 5130 Jg933a Firmware
Hpe flexnetwork 5130 Jg932a
Hpe flexnetwork 5130 Jg941a
Hpe
Hpe flexnetwork 5130 Jg937a
Hpe flexnetwork 5130 Jg932a Firmware
Hpe flexnetwork 5130 Jg940a Firmware
CPE cpe:2.3:h:hpe:flexnetwork_5130_jg936a:-:*:*:*:*:*:*:*
cpe:2.3:o:hpe:flexnetwork_5130_jg940a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:hpe:flexnetwork_5130_jg937a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hpe:flexnetwork_5130_jg933a:-:*:*:*:*:*:*:*
cpe:2.3:o:hpe:flexnetwork_5130_jg934a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:hpe:flexnetwork_5130_jg941a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hpe:flexnetwork_5130_jg932a:-:*:*:*:*:*:*:*
cpe:2.3:o:hpe:flexnetwork_5130_jg933a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:o:hpe:flexnetwork_5130_jg936a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hpe:flexnetwork_5130_jg940a:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:flexnetwork_5130_jg941a:-:*:*:*:*:*:*:*
cpe:2.3:h:hpe:flexnetwork_5130_jg937a:-:*:*:*:*:*:*:*
cpe:2.3:o:hpe:flexnetwork_5130_jg932a_firmware:*:*:*:*:*:*:*:*
cpe:2.3:h:hpe:flexnetwork_5130_jg934a:-:*:*:*:*:*:*:*
References (MISC) https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbnw04234en_us - (MISC) https://support.hpe.com/hpsc/doc/public/display?docLocale=en_US&docId=emr_na-hpesbnw04234en_us - Patch, Vendor Advisory

04 Feb 2022, 23:28

Type Values Removed Values Added
New CVE

Information

Published : 2022-02-04 23:15

Updated : 2023-12-10 14:09


NVD link : CVE-2021-29219

Mitre link : CVE-2021-29219

CVE.ORG link : CVE-2021-29219


JSON object : View

Products Affected

hpe

  • flexnetwork_5130_jg940a_firmware
  • flexnetwork_5130_jg937a_firmware
  • flexnetwork_5130_jg941a
  • flexnetwork_5130_jg932a_firmware
  • flexnetwork_5130_jg936a_firmware
  • flexnetwork_5130_jg933a_firmware
  • flexnetwork_5130_jg940a
  • flexnetwork_5130_jg941a_firmware
  • flexnetwork_5130_jg933a
  • flexnetwork_5130_jg932a
  • flexnetwork_5130_jg934a
  • flexnetwork_5130_jg936a
  • flexnetwork_5130_jg934a_firmware
  • flexnetwork_5130_jg937a
CWE
CWE-120

Buffer Copy without Checking Size of Input ('Classic Buffer Overflow')