[Bug 1192949] New: VUL-0: CVE-2021-40391: gerbv: out-of-bounds write in the drill format T-code tool number functionality
http://bugzilla.opensuse.org/show_bug.cgi?id=1192949 Bug ID: 1192949 Summary: VUL-0: CVE-2021-40391: gerbv: out-of-bounds write in the drill format T-code tool number functionality Classification: openSUSE Product: openSUSE Distribution Version: Leap 15.3 Hardware: Other URL: https://smash.suse.de/issue/315433/ OS: Other Status: NEW Severity: Normal Priority: P5 - None Component: Security Assignee: wk@ire.pw.edu.pl Reporter: thomas.leroy@suse.com QA Contact: security-team@suse.de Found By: Security Response Team Blocker: --- CVE-2021-40391 An out-of-bounds write vulnerability exists in the drill format T-code tool number functionality of Gerbv 2.7.0, dev (commit b5f1eacd), and the forked version of Gerbv (commit 71493260). A specially-crafted drill file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability. Upstream commit: https://github.com/gerbv/gerbv/commit/672214abb47a802fc000125996e6e0a46c623a... References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2021-40391 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-40391 https://www.talosintelligence.com/vulnerability_reports/TALOS-2021-1402 https://github.com/gerbv/gerbv/issues/30 -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.opensuse.org/show_bug.cgi?id=1192949 http://bugzilla.opensuse.org/show_bug.cgi?id=1192949#c1 --- Comment #1 from Thomas Leroy <thomas.leroy@suse.com> --- Affected codestreams: - openSUSE:Backports:SLE-15-SP1:Update - openSUSE:Backports:SLE-15-SP2:Update - openSUSE:Backports:SLE-15-SP3:Update - openSUSE:Leap:15.2:Update - openSUSE:Factory -- You are receiving this mail because: You are on the CC list for the bug.
http://bugzilla.opensuse.org/show_bug.cgi?id=1192949 http://bugzilla.opensuse.org/show_bug.cgi?id=1192949#c2 Christophe Giboudeaux <christophe@krop.fr> changed: What |Removed |Added ---------------------------------------------------------------------------- CC| |christophe@krop.fr --- Comment #2 from Christophe Giboudeaux <christophe@krop.fr> --- https://build.opensuse.org/request/show/974875 submitted to the devel project -- You are receiving this mail because: You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@suse.com