CVE-2021-31872: Buffer Overflow
Published Apr 30, 2021
·Updated
An issue was discovered in klibc before 2.0.9. Multiple possible integer overflows in the cpio command on 32-bit systems may result in a buffer overflow or other security impact.
Affected Software
2 affected components
Klibc Project Klibc X86<2.0.9
Debian Debian Linux=9.0
Remediation
Event History
Apr 30, 2021
CVE Published
via MITRE·05:19 AM
Data Sourced
via MITRE·05:19 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2021-31872?
CVE-2021-31872 is classified as a high severity vulnerability due to the potential for integer overflows leading to buffer overflows.
2
How do I fix CVE-2021-31872?
To mitigate CVE-2021-31872, upgrade klibc to version 2.0.9 or later.
3
What systems are affected by CVE-2021-31872?
CVE-2021-31872 affects 32-bit systems running klibc prior to version 2.0.9.
4
What risks are posed by CVE-2021-31872?
CVE-2021-31872 may result in buffer overflows which can lead to arbitrary code execution or system crashes.
5
Is my version of Debian affected by CVE-2021-31872?
Yes, Debian 9.0 is affected by CVE-2021-31872 if it includes klibc versions prior to 2.0.9.