// For flags

CVE-2021-36773

 

Severity Score

7.5
*CVSS v3.1

Exploit Likelihood

*EPSS

Affected Versions

*CPE

Public Exploits

1
*Multiple Sources

Exploited in Wild

-
*KEV

Decision

-
*SSVC
Descriptions

uBlock Origin before 1.36.2 and nMatrix before 4.4.9 support an arbitrary depth of parameter nesting for strict blocking, which allows crafted web sites to cause a denial of service (unbounded recursion that can trigger memory consumption and a loss of all blocking functionality).

uBlock Origin versiones anteriores a 1.36.2 y nMatrix versiones anteriores a 4.4.9, admiten una profundidad arbitraria de anidación de parámetros para un bloqueo estricto, lo que permite que los sitios web diseñados causar una denegación de servicio (recursividad ilimitada que puede desencadenar el consumo de memoria y la pérdida de toda la funcionalidad de bloqueo)

*Credits: N/A
CVSS Scores
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
None
Integrity
None
Availability
High
Attack Vector
Network
Attack Complexity
Low
Authentication
None
Confidentiality
None
Integrity
None
Availability
Partial
* Common Vulnerability Scoring System
SSVC
  • Decision:-
Exploitation
-
Automatable
-
Tech. Impact
-
* Organization's Worst-case Scenario
Timeline
  • 2021-07-18 CVE Reserved
  • 2021-07-18 CVE Published
  • 2024-08-04 CVE Updated
  • 2024-08-04 EPSS Updated
  • 2024-08-04 First Exploit
  • ---------- Exploited in Wild
  • ---------- KEV Due Date
CWE
  • CWE-674: Uncontrolled Recursion
CAPEC
Affected Vendors, Products, and Versions
Vendor Product Version Other Status
Vendor Product Version Other Status <-- --> Vendor Product Version Other Status
Sciruby
Search vendor "Sciruby"
Nmatrix
Search vendor "Sciruby" for product "Nmatrix"
< 4.4.9
Search vendor "Sciruby" for product "Nmatrix" and version " < 4.4.9"
-
Affected
Ublockorigin
Search vendor "Ublockorigin"
Ublock Origin
Search vendor "Ublockorigin" for product "Ublock Origin"
< 1.36.2
Search vendor "Ublockorigin" for product "Ublock Origin" and version " < 1.36.2"
-
Affected
Umatrix Project
Search vendor "Umatrix Project"
Umatrix
Search vendor "Umatrix Project" for product "Umatrix"
< 1.4.2
Search vendor "Umatrix Project" for product "Umatrix" and version " < 1.4.2"
-
Affected
Debian
Search vendor "Debian"
Debian Linux
Search vendor "Debian" for product "Debian Linux"
9.0
Search vendor "Debian" for product "Debian Linux" and version "9.0"
-
Affected