CVE-2021-21829: Buffer Overflow
Published Aug 13, 2021
·Updated
A heap-based buffer overflow vulnerability exists in the XML Decompression EnumerationUncompressor::UncompressItem functionality of AT&T Labs’ Xmill 0.7. A specially crafted XMI file can lead to remote code execution. An attacker can provide a malicious file to trigger this vulnerability.
Affected Software
1 affected component
Att Xmill=0.7
Event History
Aug 13, 2021
CVE Published
via MITRE·06:17 PM
Data Sourced
via MITRE·06:17 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the vulnerability ID for this issue?
The vulnerability ID for this issue is CVE-2021-21829.
2
What is the severity of CVE-2021-21829?
The severity of CVE-2021-21829 is critical.
3
What software is affected by CVE-2021-21829?
The AT&T Labs' Xmill version 0.7 is affected by CVE-2021-21829.
4
What is the impact of CVE-2021-21829?
CVE-2021-21829 can lead to remote code execution.
5
How can CVE-2021-21829 be exploited?
An attacker can exploit CVE-2021-21829 by providing a specially crafted XMI file.