ICSA-21-042-01: Open-iscsi vulnerability
Affected Software
13 affected components
Multiple Nut/Net, Version 5.1 and prior
Multiple CycloneTCP, Version 1.9.6 and prior
Multiple NDKTCPIP, Version 2.25 and prior
Multiple FNET, Version 4.6.3
Multiple uIP-Contiki-OS (end-of-life [EOL]), Version 3.0 and prior
Multiple uC/TCP-IP (EOL), Version 3.6.0 and prior
Multiple uIP-Contiki-NG, Version 4.5 and prior
Multiple uIP (EOL), Version 1.0 and prior
Multiple picoTCP-NG, Version 1.7.0 and prior
Multiple picoTCP (EOL), Version 1.7.0 and prior
Multiple MPLAB Net, Version 3.6.1 and prior
Multiple Nucleus NET, All versions prior to Version 5.2
Multiple Nucleus ReadyStart for ARM, MIPS, and PPC, All versions prior to Version 2012.12
Event History
Mar 27, 2025
Advisory Published
07:40 AM
Frequently Asked Questions
1
What is the severity of ICSA-21-042-01?
The severity of ICSA-21-042-01 is considered high due to potential remote code execution vulnerabilities.
2
How do I fix ICSA-21-042-01?
To fix ICSA-21-042-01, update all affected software versions to their latest patched versions.
3
What software is affected by ICSA-21-042-01?
ICSA-21-042-01 affects multiple software versions, including Nut/Net, CycloneTCP, NDKTCPIP, FNET, uIP-Contiki-OS, uC/TCP-IP, uIP-Contiki-NG, and uIP.
4
What are the potential impacts of ICSA-21-042-01?
The potential impacts of ICSA-21-042-01 include unauthorized remote access and control, leading to system compromise.
5
Is ICSA-21-042-01 still active?
Yes, vulnerabilities described in ICSA-21-042-01 are active and pose a risk if not mitigated promptly.