Medium severity6.5NVD Advisory· Published Nov 9, 2021· Updated Jun 17, 2026
CVE-2021-31882
CVE-2021-31882
Description
A vulnerability has been identified in Capital Embedded AR Classic 431-422 (All versions), Capital Embedded AR Classic R20-11 (All versions < V2303). The DHCP client application does not validate the length of the Domain Name Server IP option(s) (0x06) when processing DHCP ACK packets. This may lead to Denial-of-Service conditions. (FSMD-2021-0011)
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
140+ 1 more
- (no CPE)range: 0
- (no CPE)
- Range: 0
- cpe:2.3:a:siemens:capital_vstar:*:*:*:*:*:*:*:*
- cpe:2.3:a:siemens:nucleus_net:*:*:*:*:*:*:*:*
- cpe:2.3:a:siemens:nucleus_readystart_v3:*:*:*:*:*:*:*:*Range: <2017.02.1
- cpe:2.3:a:siemens:nucleus_source_code:*:*:*:*:*:*:*:*
- cpe:2.3:o:siemens:apogee_modular_building_controller_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:siemens:apogee_modular_equiment_controller_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:siemens:apogee_pxc_compact_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:siemens:apogee_pxc_modular_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:siemens:talon_tc_compact_firmware:*:*:*:*:*:*:*:*
- cpe:2.3:o:siemens:talon_tc_modular_firmware:*:*:*:*:*:*:*:*
Patches
Vulnerability mechanics
References
6- cert-portal.siemens.com/productcert/pdf/ssa-044112.pdfnvdVendor Advisory
- cert-portal.siemens.com/productcert/pdf/ssa-114589.pdfnvdVendor Advisory
- cert-portal.siemens.com/productcert/html/ssa-044112.htmlnvd
- cert-portal.siemens.com/productcert/html/ssa-114589.htmlnvd
- cert-portal.siemens.com/productcert/html/ssa-620288.htmlnvd
- cert-portal.siemens.com/productcert/pdf/ssa-620288.pdfnvd
News mentions
0No linked articles in our index yet.