Out-of-Bounds Write Vulnerability in Dräger CC-Vision Software
CVE-2021-4478

8.3HIGH

Key Information:

Vendor

Dräger

Vendor
CVE Published:
2 June 2026

What is CVE-2021-4478?

Dräger CC-Vision Basic prior to version 7.5.3 and CC-Vision E-Cal prior to version 7.2.5.0 are susceptible to an out-of-bounds write vulnerability. This flaw arises during the loading of crafted .gdt files, potentially leading to a buffer overflow during file parsing. An attacker could exploit this vulnerability to crash the application or execute arbitrary code on the affected system, highlighting the importance of applying security patches and maintaining updated software.

Affected Version(s)

CC-Vision Basic 0 < 7.5.3

CC-Vision E-Cal 0 < 7.2.5.0

References

CVSS V4

Score:
8.3
Severity:
HIGH
Confidentiality:
None
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
Unknown

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Mario Ceballos
.