[Bug 1199186] New: VUL-1: CVE-2021-27419: klee-uclibc: uClibc-ng versions prior to 1.0.37 are vulnerable to integer wrap-around in functions malloc-simple
https://bugzilla.suse.com/show_bug.cgi?id=1199186 Bug ID: 1199186 Summary: VUL-1: CVE-2021-27419: klee-uclibc: uClibc-ng versions prior to 1.0.37 are vulnerable to integer wrap-around in functions malloc-simple Classification: openSUSE Product: openSUSE Distribution Version: Leap 15.4 Hardware: Other URL: https://smash.suse.de/issue/330633/ OS: Other Status: NEW Severity: Minor Priority: P5 - None Component: Security Assignee: jslaby@suse.com Reporter: cathy.hu@suse.com QA Contact: security-team@suse.de Found By: Security Response Team Blocker: --- CVE-2021-27419 uClibc-ng versions prior to 1.0.37 are vulnerable to integer wrap-around in functions malloc-simple. This improper memory assignment can lead to arbitrary memory allocation, resulting in unexpected behavior such as a crash or a remote code injection/execution. References: http://web.nvd.nist.gov/view/vuln/detail?vulnId=CVE-2021-27419 http://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2021-27419 https://downloads.uclibc-ng.org/releases/ https://www.cisa.gov/uscert/ics/advisories/icsa-21-119-04 -- You are receiving this mail because: You are on the CC list for the bug.
https://bugzilla.suse.com/show_bug.cgi?id=1199186 https://bugzilla.suse.com/show_bug.cgi?id=1199186#c1 --- Comment #1 from Hu <cathy.hu@suse.com> --- klee-uclibc could be affected in: - openSUSE:Factory/klee-uclibc 1.2 -- You are receiving this mail because: You are on the CC list for the bug.
https://bugzilla.suse.com/show_bug.cgi?id=1199186 Maintenance Robot <maint-coord+maintenance_robot@suse.de> changed: What |Removed |Added ---------------------------------------------------------------------------- Priority|P5 - None |P4 - Low -- You are receiving this mail because: You are on the CC list for the bug.
https://bugzilla.suse.com/show_bug.cgi?id=1199186 https://bugzilla.suse.com/show_bug.cgi?id=1199186#c2 Jiri Slaby <jslaby@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- CC| |jslaby@suse.com Assignee|jslaby@suse.com |security-team@suse.de --- Comment #2 from Jiri Slaby <jslaby@suse.com> --- libc/stdlib/malloc-simple/alloc.c is not built for klee-uclibc config: +# MALLOC_SIMPLE is not set -> INVALID -- You are receiving this mail because: You are on the CC list for the bug.
https://bugzilla.suse.com/show_bug.cgi?id=1199186 https://bugzilla.suse.com/show_bug.cgi?id=1199186#c3 Hu <cathy.hu@suse.com> changed: What |Removed |Added ---------------------------------------------------------------------------- Status|NEW |RESOLVED Resolution|--- |INVALID --- Comment #3 from Hu <cathy.hu@suse.com> --- Closing -- You are receiving this mail because: You are on the CC list for the bug.
https://bugzilla.suse.com/show_bug.cgi?id=1199186 https://bugzilla.suse.com/show_bug.cgi?id=1199186#c4 --- Comment #4 from Jiri Slaby <jslaby@suse.com> --- FTR the fix is (IMO): https://github.com/wbx-github/uclibc-ng/commit/015d5b8c1a75b551f7f0215543fac... -- You are receiving this mail because: You are on the CC list for the bug.
participants (1)
-
bugzilla_noreply@suse.com