CVE-2021-31871: Integer Overflow
Published Apr 30, 2021
·Updated
An issue was discovered in klibc before 2.0.9. An integer overflow in the cpio command may result in a NULL pointer dereference on 64-bit systems.
Affected Software
2 affected components
Klibc Project Klibc<2.0.9
Debian Debian Linux=9.0
Remediation
Event History
Apr 30, 2021
CVE Published
via MITRE·05:18 AM
Data Sourced
via MITRE·05:18 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-31871?
CVE-2021-31871 is considered a high severity vulnerability due to its potential to cause a NULL pointer dereference.
2
How do I fix CVE-2021-31871?
To fix CVE-2021-31871, upgrade klibc to version 2.0.9 or later.
3
What software is affected by CVE-2021-31871?
CVE-2021-31871 affects klibc versions prior to 2.0.9 and Debian 9.0.
4
What systems are impacted by CVE-2021-31871?
CVE-2021-31871 impacts 64-bit systems running affected versions of klibc.
5
What is the nature of the vulnerability in CVE-2021-31871?
CVE-2021-31871 describes an integer overflow in the cpio command that can lead to a NULL pointer dereference.