First published: Tue Feb 23 2021(Updated: )
A flaw was found in libcaca v0.99.beta19. A buffer overflow issue in caca_resize function in libcaca/caca/canvas.c may lead to local execution of arbitrary code in the user context.
Credit: patrick@puiterwijk.org
Affected Software | Affected Version | How to fix |
---|---|---|
libcaca project libcaca | =0.99-beta19 | |
Debian | =9.0 | |
Fedora | =34 | |
Fedora | =35 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-3410 is considered to have a high severity due to the potential for local execution of arbitrary code.
To address CVE-2021-3410, upgrade libcaca to a patched version that resolves the buffer overflow issue.
CVE-2021-3410 affects libcaca version 0.99-beta19 on Debian 9.0 and Fedora versions 34 and 35.
The impact of CVE-2021-3410 includes the risk of malicious local users executing arbitrary code within the user context.
CVE-2021-3410 is not exploitable remotely as it requires local access to the affected systems.