CVE-2021-38425
eProsima Fast DDS versions prior to 2.4.0 (#2269) are susceptible to exploitation when an attacker sends a specially crafted packet to flood a target device with unwanted traffic, which may result in a denial-of-service condition and information exposure.
Scoring
- Severity
- HIGH
- CVSS base score
- 7.5
- CVSS vector
- CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H
- EPSS probability
- 0.09%
- CWE
- CWE-406
- Published
- 2022-05-05
- Last modified
- 2026-03-13
Affected products
- eProsima Fast DDS
Weakness type
Related vulnerabilities
- CVE-2022-0028 — PAN-OS: Reflected Amplification Denial-of-Service (DoS) Vulnerability in URL Filtering
- CVE-2021-38487 — Potential Network Amplification and Information Exposure in RTI Connext Professional and Connext Micro
- CVE-2021-38135 — Possible External service interaction Vulnerability in OpenText iManager
- CVE-2024-25015 — IBM MQ denial of service
- CVE-2021-43547 — TwinOaks Computing CoreDX DDS Secure Network Amplification
- CVE-2026-54609 — QTINeon has unauthenticated relay-to-host amplification via unbounded RECONNECT_REQUEST forwarding
- CVE-2021-38429 — OCI OpenDDS Secure Network Amplification
- CVE-2026-45557 — Technitium DNS Server excessive DNSSEC requests