Vulnerability Database
Blog
FAQ
Docs
CVE-2021-3756
See a problem?
Please try reporting it
to the source
first.
Source
https://nvd.nist.gov/vuln/detail/CVE-2021-3756
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2021-3756.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2021-3756
Related
UBUNTU-CVE-2021-3756
USN-5184-1
openSUSE-SU-2024:11673-1
Published
2021-10-29T16:15:07Z
Modified
2024-10-12T07:55:30.232233Z
Severity
9.8 (Critical)
CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVSS Calculator
Summary
[none]
Details
libmysofa is vulnerable to Heap-based Buffer Overflow
References
https://huntr.dev/bounties/7ca8d9ea-e2a6-4294-af28-70260bb53bc1
https://github.com/hoene/libmysofa/commit/890400ebd092c574707d0c132124f8ff047e20e1
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/PGQ45S4RH7MC42NHTAGOIHYR4C5IRTMZ/
https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/WGY7TAZX2M4NYXXGNHIBBKKN5XMSMKQ4/
https://security-tracker.debian.org/tracker/CVE-2021-3756
Affected packages
Debian:11
/
libmysofa
Package
Name
libmysofa
Purl
pkg:deb/debian/libmysofa?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Affected versions
1.*
1.2~dfsg0-1
1.2.1~dfsg0-1
1.3~dfsg0-1
1.3.1~dfsg0-1
1.3.2+dfsg-1
1.3.2+dfsg-2
Ecosystem specific
{ "urgency": "not yet assigned" }
Debian:12
/
libmysofa
Package
Name
libmysofa
Purl
pkg:deb/debian/libmysofa?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1.2.1~dfsg0-1
Ecosystem specific
{ "urgency": "not yet assigned" }
Debian:13
/
libmysofa
Package
Name
libmysofa
Purl
pkg:deb/debian/libmysofa?arch=source
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Fixed
1.2.1~dfsg0-1
Ecosystem specific
{ "urgency": "not yet assigned" }
Git
/
github.com/hoene/libmysofa
Affected ranges
Type
GIT
Repo
https://github.com/hoene/libmysofa
Events
Introduced
0
Unknown introduced commit / All previous commits are affected
Fixed
890400ebd092c574707d0c132124f8ff047e20e1
Affected versions
v0,.*
v0,.4
v0.*
v0.1
v0.2
v0.3
v0.4
v0.4(Windows)
v0.5
v0.6
v0.7
v0.8
v0.9
v0.9.1
v1.*
v1.0
v1.1
v1.2
CVE-2021-3756 - OSV