Vulnerability intelligence
CVE-2021-35394
Realtek Jungle SDK Remote Code Execution Vulnerability
Realtek Jungle Software Development Kit (SDK)
RealTek Jungle SDK contains multiple memory corruption vulnerabilities which can allow an attacker to perform remote code execution.
CVSS Score
9.8
Critical
EPSS — Exploit Probability
—
Awaiting FIRST.org data
Exploitation
Confirmed in the wild
KEV since 2021-12-10
Remediation
unknown
Federal deadline 2021-12-24
CISA required action
Apply updates per vendor instructions. Deadline for federal agencies: 2021-12-24.
1 article across 1 outlet · first covered Oct 5, 2026 · latest Oct 5, 2026
Coverage timeline
-
Cling botnet exploits Realtek flaw and hides C2 in STUN trafficthehackernews.com · Oct 5, 2026