First published: Mon Feb 08 2021(Updated: )
Incorrect handling of input data in verifyAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault error in case of restrictive memory protection or near NULL pointer overwrite in case of no memory restrictions (e.g. in embedded environments).
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Symonics libmysofa | >=0.5<=1.1 | |
Fedoraproject Fedora | =32 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2020-36148 is a vulnerability that occurs due to incorrect handling of input data in the libmysofa library 0.5 - 1.1.
The severity of CVE-2020-36148 is medium with a CVSS score of 6.5.
Symonics libmysofa versions 0.5 to 1.1 are affected by CVE-2020-36148.
Fedora version 32 is affected by CVE-2020-36148.
To fix the CVE-2020-36148 vulnerability, it is recommended to update the libmysofa library to a version above 1.1.