{"id":"CVE-2021-33304","details":"Double Free vulnerability in virtualsquare picoTCP v1.7.0 and picoTCP-NG v2.1 in modules/pico_fragments.c in function pico_fragments_reassemble, allows attackers to execute arbitrary code.","modified":"2026-07-09T01:06:57.227491Z","published":"2023-02-15T22:15:11.063Z","references":[{"type":"FIX","url":"https://github.com/virtualsquare/picotcp/issues/6"}],"affected":[{"ranges":[{"type":"GIT","repo":"https://github.com/tass-belgium/picotcp","events":[{"introduced":"13c00a067190f5ec62340ed932a2bb833c366d63"},{"last_affected":"13c00a067190f5ec62340ed932a2bb833c366d63"}],"database_specific":{"cpe":"cpe:2.3:a:altran:picotcp:1.7.0:*:*:*:*:*:*:*","extracted_events":[{"introduced":"1.7.0"},{"last_affected":"1.7.0"}],"source":"CPE_STRING"}}],"versions":["1.7.0","v1.7.0"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-33304.json"}},{"ranges":[{"type":"GIT","repo":"https://github.com/virtualsquare/picotcp","events":[{"introduced":"dc9cfc0145151012cf1946774ef1795fe221079c"},{"last_affected":"dc9cfc0145151012cf1946774ef1795fe221079c"}],"database_specific":{"cpe":"cpe:2.3:a:altran:picotcp-ng:2.1:*:*:*:*:*:*:*","extracted_events":[{"introduced":"2.1"},{"last_affected":"2.1"}],"source":"CPE_STRING"}}],"versions":["2.1","v2.1"],"database_specific":{"source":"https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2021-33304.json"}}],"schema_version":"1.7.5","severity":[{"type":"CVSS_V3","score":"CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H"}]}