First published: Fri Oct 29 2021(Updated: )
libmysofa is vulnerable to Heap-based Buffer Overflow
Credit: security@huntr.dev
Affected Software | Affected Version | How to fix |
---|---|---|
Symonics libmysofa | <1.2.1 | |
Fedoraproject Fedora | =34 | |
Fedoraproject Fedora | =35 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-3756 is a vulnerability in libmysofa that allows for a Heap-based Buffer Overflow.
CVE-2021-3756 has a severity score of 9.8, which is considered critical.
Versions up to and excluding 1.2.1 of Symonics libmysofa, Fedora 34, and Fedora 35 are affected by CVE-2021-3756.
To fix CVE-2021-3756, update to a patched version of Symonics libmysofa or upgrade to a newer version of Fedora.
You can find more information about CVE-2021-3756 at the following references: [link1](https://github.com/hoene/libmysofa/commit/890400ebd092c574707d0c132124f8ff047e20e1), [link2](https://huntr.dev/bounties/7ca8d9ea-e2a6-4294-af28-70260bb53bc1), [link3](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/PGQ45S4RH7MC42NHTAGOIHYR4C5IRTMZ/)