CVE-2021-43618

Source
https://cve.org/CVERecord?id=CVE-2021-43618
Import Source
https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2021-43618.json
JSON Data
https://api.test.osv.dev/v1/vulns/CVE-2021-43618
Downstream
ALPINE (1)
AZL (1)
BELL (1)
CGA (2)
CLSA (2)
DEBIAN (1)
JLSEC (1)
MGASA (1)
OESA (1)
openSUSE (3)
RHSA (4)
RLSA (1)
SUSE (2)
UBUNTU (1)
Related
Published
2021-11-15T04:15:06Z
Modified
2026-07-17T21:00:57Z
Severity
  • 7.5 (High) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

GNU Multiple Precision Arithmetic Library (GMP) through 6.2.1 has an mpz/inp_raw.c integer overflow and resultant buffer overflow via crafted input, leading to a segmentation fault on 32-bit platforms.

References

Affected packages

Git /

Affected ranges

Database specific

source
"https://storage.googleapis.com/osv-test-cve-osv-conversion/osv-output/CVE-2021-43618.json"
unresolved_ranges
[
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "6.2.1"
            }
        ]
    },
    {
        "events": [
            {
                "introduced": "0"
            },
            {
                "last_affected": "9.0"
            }
        ]
    }
]