UBUNTU-CVE-2021-45927

Source
https://ubuntu.com/security/CVE-2021-45927
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2021/UBUNTU-CVE-2021-45927.json
JSON Data
https://api.test.osv.dev/v1/vulns/UBUNTU-CVE-2021-45927
Upstream
Published
2022-01-01T01:15:00Z
Modified
2025-09-08T16:47:27Z
Severity
  • 7.8 (High) CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H CVSS Calculator
  • Ubuntu - medium
Summary
[none]
Details

MDB Tools (aka mdbtools) 0.9.2 has a stack-based buffer overflow (at 0x7ffd6e029ee0) in mdbnumerictostring (called from mdbxferbounddata and mdbattempt_bind).

References

Affected packages

Ubuntu:22.04:LTS

mdbtools

Package

Name
mdbtools
Purl
pkg:deb/ubuntu/mdbtools@1.0.0+dfsg-1?arch=source&distro=jammy

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*

0.9.4-1ubuntu1

1.*

1.0.0+dfsg-1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1.0.0+dfsg-1",
            "binary_name": "libmdb3"
        },
        {
            "binary_version": "1.0.0+dfsg-1",
            "binary_name": "libmdbsql3"
        },
        {
            "binary_version": "1.0.0+dfsg-1",
            "binary_name": "mdbtools"
        },
        {
            "binary_version": "1.0.0+dfsg-1",
            "binary_name": "mdbtools-dev"
        },
        {
            "binary_version": "1.0.0+dfsg-1",
            "binary_name": "odbc-mdbtools"
        }
    ]
}

Ubuntu:24.04:LTS

mdbtools

Package

Name
mdbtools
Purl
pkg:deb/ubuntu/mdbtools@1.0.0+dfsg-1.2ubuntu1?arch=source&distro=noble

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.0.0+dfsg-1.1
1.0.0+dfsg-1.2build2
1.0.0+dfsg-1.2ubuntu1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1.0.0+dfsg-1.2ubuntu1",
            "binary_name": "libmdb3t64"
        },
        {
            "binary_version": "1.0.0+dfsg-1.2ubuntu1",
            "binary_name": "libmdbsql3t64"
        },
        {
            "binary_version": "1.0.0+dfsg-1.2ubuntu1",
            "binary_name": "mdbtools"
        },
        {
            "binary_version": "1.0.0+dfsg-1.2ubuntu1",
            "binary_name": "mdbtools-dev"
        },
        {
            "binary_version": "1.0.0+dfsg-1.2ubuntu1",
            "binary_name": "odbc-mdbtools"
        }
    ]
}

Ubuntu:25.04

mdbtools

Package

Name
mdbtools
Purl
pkg:deb/ubuntu/mdbtools@1.0.1-0.1?arch=source&distro=plucky

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

1.*

1.0.0+dfsg-1.2ubuntu1
1.0.0+dfsg-1.3ubuntu1
1.0.1-0.1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "1.0.1-0.1",
            "binary_name": "libmdb3t64"
        },
        {
            "binary_version": "1.0.1-0.1",
            "binary_name": "libmdbsql3t64"
        },
        {
            "binary_version": "1.0.1-0.1",
            "binary_name": "mdbtools"
        },
        {
            "binary_version": "1.0.1-0.1",
            "binary_name": "mdbtools-dev"
        },
        {
            "binary_version": "1.0.1-0.1",
            "binary_name": "odbc-mdbtools"
        }
    ]
}

Ubuntu:Pro:16.04:LTS

mdbtools

Package

Name
mdbtools
Purl
pkg:deb/ubuntu/mdbtools@0.7.1-4?arch=source&distro=esm-infra/xenial

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*

0.7.1-4

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.7.1-4",
            "binary_name": "libmdb2"
        },
        {
            "binary_version": "0.7.1-4",
            "binary_name": "libmdbodbc1"
        },
        {
            "binary_version": "0.7.1-4",
            "binary_name": "libmdbsql2"
        },
        {
            "binary_version": "0.7.1-4",
            "binary_name": "mdbtools"
        },
        {
            "binary_version": "0.7.1-4",
            "binary_name": "mdbtools-dev"
        },
        {
            "binary_version": "0.7.1-4",
            "binary_name": "mdbtools-gmdb"
        },
        {
            "binary_version": "0.7.1-4",
            "binary_name": "odbc-mdbtools"
        }
    ]
}

Ubuntu:Pro:18.04:LTS

mdbtools

Package

Name
mdbtools
Purl
pkg:deb/ubuntu/mdbtools@0.7.1-6?arch=source&distro=esm-apps/bionic

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*

0.7.1-5
0.7.1-6

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.7.1-6",
            "binary_name": "libmdb2"
        },
        {
            "binary_version": "0.7.1-6",
            "binary_name": "libmdbsql2"
        },
        {
            "binary_version": "0.7.1-6",
            "binary_name": "mdbtools"
        },
        {
            "binary_version": "0.7.1-6",
            "binary_name": "mdbtools-dev"
        },
        {
            "binary_version": "0.7.1-6",
            "binary_name": "odbc-mdbtools"
        }
    ]
}

Ubuntu:Pro:20.04:LTS

mdbtools

Package

Name
mdbtools
Purl
pkg:deb/ubuntu/mdbtools@0.7.1-6build1?arch=source&distro=esm-apps/focal

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0Unknown introduced version / All previous versions are affected

Affected versions

0.*

0.7.1-6build1

Ecosystem specific

{
    "binaries": [
        {
            "binary_version": "0.7.1-6build1",
            "binary_name": "libmdb2"
        },
        {
            "binary_version": "0.7.1-6build1",
            "binary_name": "libmdbsql2"
        },
        {
            "binary_version": "0.7.1-6build1",
            "binary_name": "mdbtools"
        },
        {
            "binary_version": "0.7.1-6build1",
            "binary_name": "mdbtools-dev"
        },
        {
            "binary_version": "0.7.1-6build1",
            "binary_name": "odbc-mdbtools"
        }
    ]
}