Realtek SDK is vulnerable to CVE-2021-35394, a security vulnerability which can be used to launch cyber attacks. The vulnerability was discovered by security experts, who state that it can lead to malicious actors gaining access to devices, executing malicious code and creating botnets. The flaw affects several Realtek components, such as the Realtek SDK software development kit, the Realtek SDK embedded software, the Realtek firmware and the Realtek content protection device.
Malicious actors can exploit the vulnerability by sending specially crafted data packets to connected devices via the Realtek SDK. By doing so, they are able to gain control of the device, allowing them to access its contents, install malicious programs and create a botnet. This can lead to data theft, unauthorized access to systems and networks and other forms of cyber attack.
Realtek has released an official patch for CVE-2021-35394, and is advising all users to ensure that their vulnerable devices are up-to-date. In addition, users should take steps to ensure that their systems are protected from malicious actors, such as using firewalls and anti-virus software. It is also recommended that affected devices be disconnected from the internet, as this will reduce the chances of them being targeted by malicious actors.
This Cyber News was published on securityaffairs.com. Publication date: Thu, 26 Jan 2023 10:39:02 +0000