CVE-2021-33315 Details
Description
The TRENDnet TI-PG1284i switch(hw v2.0R) prior to version 2.0.2.S0 suffers from an integer underflow vulnerability. This vulnerability exists in its lldp related component. Due to lack of proper validation on length field of PortID TLV, by sending a crafted lldp packet to the device, integer underflow would occur and the negative number will be passed to memcpy() later, which may cause buffer overflow or invalid memory access.
Metrics
CVSS 4.0 Severity and Vector Strings:
No CVSS 4.0 data is available for this CVE.
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
No SSVC data is available for this CVE.
References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://www.trendnet.com/support/view.asp?cat=4&id=81 | CVE | PatchVendor Advisory |
| https://www.trendnet.com/support/view.asp?cat=4&id=81 | [email protected] | PatchVendor Advisory |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-20 | Improper Input Validation | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| trendnet ti-pg1284i firmware | < 2.0.2.s0 |
CPE
Remediation
| |
| trendnet ti-pg1284i | 2.0r |
CPE
Remediation
| |
| trendnet ti-g102i firmware | All versions |
CPE
Remediation
| |
| trendnet ti-g102i | All versions |
CPE
Remediation
| |
| trendnet ti-g160i firmware | All versions |
CPE
Remediation
| |
| trendnet ti-g160i | All versions |
CPE
Remediation
| |
| trendnet ti-g642i firmware | All versions |
CPE
Remediation
| |
| trendnet ti-g642i | All versions |
CPE
Remediation
| |
| trendnet ti-pg102i firmware | All versions |
CPE
Remediation
| |
| trendnet ti-pg102i | All versions |
CPE
Remediation
| |
| trendnet ti-pg541i firmware | All versions |
CPE
Remediation
| |
| trendnet ti-pg541i | All versions |
CPE
Remediation
| |
| trendnet ti-rp262i firmware | All versions |
CPE
Remediation
| |
| trendnet ti-rp262i | All versions |
CPE
Remediation
| |
| trendnet teg-30102ws firmware | All versions |
CPE
Remediation
| |
| trendnet teg-30102ws | All versions |
CPE
Remediation
| |
| trendnet tpe-30102ws firmware | All versions |
CPE
Remediation
| |
| trendnet tpe-30102ws | All versions |
CPE
Remediation
| |
Change History
5 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jun 17, 2026 | CVE Modified | [email protected] |
| Nov 21, 2024 | CVE Modified | CVE |
| May 14, 2024 | CVE Modified | [email protected] |
| Jul 12, 2022 | CWE Remap | [email protected] |
| May 20, 2022 | Initial Analysis | [email protected] |