CVE-2021-27862

Layer 2 network filtering capabilities such as IPv6 RA guard can be bypassed using LLC/SNAP headers with invalid length and Ethernet to Wifi frame conversion (and optionally VLAN0 headers).
Configurations

Configuration 1 (hide)

cpe:2.3:a:ieee:ieee_802.2:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:ietf:p802.1q:*:*:*:*:*:*:*:*

History

21 Nov 2024, 05:58

Type Values Removed Values Added
References () https://blog.champtar.fr/VLAN0_LLC_SNAP/ - () https://blog.champtar.fr/VLAN0_LLC_SNAP/ -
References () https://datatracker.ietf.org/doc/draft-ietf-v6ops-ra-guard/08/ - Vendor Advisory () https://datatracker.ietf.org/doc/draft-ietf-v6ops-ra-guard/08/ - Vendor Advisory
References () https://kb.cert.org/vuls/id/855201 - () https://kb.cert.org/vuls/id/855201 -
References () https://standards.ieee.org/ieee/802.2/1048/ - Vendor Advisory () https://standards.ieee.org/ieee/802.2/1048/ - Vendor Advisory

Information

Published : 2022-09-27 19:15

Updated : 2024-11-21 05:58


NVD link : CVE-2021-27862

Mitre link : CVE-2021-27862

CVE.ORG link : CVE-2021-27862


JSON object : View

Products Affected

ieee

  • ieee_802.2

ietf

  • p802.1q
CWE
CWE-130

Improper Handling of Length Parameter Inconsistency

CWE-290

Authentication Bypass by Spoofing