UBUNTU-CVE-2021-3405

Source
https://ubuntu.com/security/CVE-2021-3405
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2021/UBUNTU-CVE-2021-3405.json
JSON Data
https://api.test.osv.dev/v1/vulns/UBUNTU-CVE-2021-3405
Related
Published
2021-02-23T20:15:00Z
Modified
2025-01-13T10:22:24Z
Severity
  • 6.5 (Medium) CVSS_V3 - CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H CVSS Calculator
Summary
[none]
Details

A flaw was found in libebml before 1.4.2. A heap overflow bug exists in the implementation of EbmlString::ReadData and EbmlUnicodeString::ReadData in libebml.

References

Affected packages

Ubuntu:Pro:16.04:LTS / libebml

Package

Name
libebml
Purl
pkg:deb/ubuntu/libebml@1.3.3-1ubuntu0.1?arch=source&distro=esm-apps/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.3.1-5
1.3.3-1
1.3.3-1ubuntu0.1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:22.04:LTS / libebml

Package

Name
libebml
Purl
pkg:deb/ubuntu/libebml@1.4.2-2?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.4.2-1
1.4.2-2

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:24.10 / libebml

Package

Name
libebml
Purl
pkg:deb/ubuntu/libebml@1.4.5-1?arch=source&distro=oracular

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.4.5-1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}

Ubuntu:24.04:LTS / libebml

Package

Name
libebml
Purl
pkg:deb/ubuntu/libebml@1.4.5-1?arch=source&distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.4.4-1
1.4.5-1

Ecosystem specific

{
    "ubuntu_priority": "medium"
}