CVE-2021-29507 is a medium-severity vulnerability affecting GENIVI Diagnostic Log and Trace (DLT) versions 2.10.0 through 2.18.6. It allows an authenticated attacker to crash the DLT component by introducing special characters into a configuration file, leading to a denial of service where applications fail to generate logs. There is no known active exploitation, public exploit code, or significant community discussion surrounding this vulnerability. A patch is not yet available, but a manual integrity check of configuration files can serve as a workaround.
| Vendor | Product | Version(s) | CPE |
|---|---|---|---|
>= 2.10.0, <= 2.18.6CPE matchmatch criteria | cpe:2.3:a:genivi:diagnostic_log_and_trace:*:*:*:*:*:*:*:* |
CVSS version used by this source: 3.1
CVSS:3.1/AV:N/AC:L/PR:L/UI:R/S:U/C:N/I:N/A:H
The average CVE in this peer group has 0.0 Twitter, 0.0 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.1 GitHub mentions.
No media coverage found for this CVE.
The average CVE in this peer group has 0.0 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.
Remediation records are not available for this CVE.