🔐 CVE Alert

CVE-2026-42801

HIGH 7.4

Deference after null check in as_rrc

CVSS Score
7.4
EPSS Score
0.0%
EPSS Percentile
0th

NULL pointer dereference vulnerability in ASR Crane,Falcon on Linux (as_rrc module) allows Pointer Manipulation. This vulnerability is associated with program file 3g.mod/lib/src/urrsir.c.

CWE CWE-476
Vendor asr
Product crane,falcon
Published Sep 23, 2026
Stay Ahead of the Next One

Get instant alerts for asr crane,falcon

Be the first to know when new high vulnerabilities affecting asr crane,falcon are published — delivered to Slack, Telegram or Discord.

Get Free Alerts → Free · No credit card · 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:L/I:L/A:L
Attack Vector
Network
Attack Complexity
Low
Privileges Required
Low
User Interaction
None
Scope
Changed
Confidentiality
Low
Integrity
Low
Availability
Low

Affected Versions

ASR / Crane,Falcon
All versions affected

References

NVD ↗ CVE.org ↗ EPSS Data ↗
asrmicro.com: https://www.asrmicro.com/en/goods/psirt?cid=45