Vulnerability record · CVE-2021-38425 · published 5 May 2022
CVE-2021-38425: Eprosima fast dds vulnerability
Eprosima · Fast Dds
eProsima Fast DDS versions prior to 2.4.0 (#2269) are susceptible to exploitation when an attacker sends a specially crafted packet to flood a target device with unwanted traffic, which may result in a denial-of-service condition and information exposure.
Description
eProsima Fast DDS versions prior to 2.4.0 (#2269) are susceptible to exploitation when an attacker sends a specially crafted packet to flood a target device with unwanted traffic, which may result in a denial-of-service condition and information exposure.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:H
Affected products
1 vulnerable configurations from NVD's CPE data, grouped by vendor and product.
References
| Link | Tags |
|---|---|
| https://github.com/eProsima/Fast-DDS | ProductThird Party Advisory |
| https://www.cisa.gov/uscert/ics/advisories/icsa-21-315-02 | Third Party AdvisoryUS Government Resource |
| https://github.com/eProsima/Fast-DDS | ProductThird Party Advisory |
| https://www.cisa.gov/uscert/ics/advisories/icsa-21-315-02 | Third Party AdvisoryUS Government Resource |
Track CVE-2021-38425 inside VULONE
Watch it alongside the ransomware crews, C2 infrastructure and forum chatter that reference it, query it through the API and pull it into your SIEM over TAXII.
Related vulnerabilities
Same products first, then exploited flaws of the same weakness class.
Source: NIST National Vulnerability Database (record CVE-2021-38425), CISA KEV, FIRST EPSS (scores of 2026-09-26). This page is refreshed as NVD updates the record.