SEPTEMBER 30, 2026
Live Feed
Back to database
Case File

CVE-2021-26461

CRITICAL · CVSS 9.8 EPSS 5.04%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2021-06-21 · Last synced 2026-08-04

CyberRota Analysis

This is a critical severity vulnerability with a CVSS score of 9.8. It affects Apache. It may be remotely exploitable.

CVE
CVE-2021-26461
Severity
CRITICAL
CVSS
9.8
EPSS
5.04%
Apache

Original NVD Description

Apache Nuttx Versions prior to 10.1.0 are vulnerable to integer wrap-around in functions malloc, realloc and memalign. This improper memory assignment can lead to arbitrary memory allocation, resulting in unexpected behavior such as a crash or a remote code injection/execution.

Related CVEs

Other vulnerabilities affecting the same vendor(s)