CVE-2021-40400: Buffer Overflow
An out-of-bounds read vulnerability exists in the RS-274X aperture macro outline primitive functionality of Gerbv 2.7.0 and dev (commit b5f1eacd) and the forked version of Gerbv (commit d7f42a9a). A specially-crafted Gerber file can lead to information disclosure. An attacker can provide a malicious file to trigger this vulnerability.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2021-40400?
CVE-2021-40400 is rated as a medium severity vulnerability due to the potential information disclosure risk it poses.
How do I fix CVE-2021-40400?
To fix CVE-2021-40400, update Gerbv to the latest version that addresses this vulnerability.
What types of systems are affected by CVE-2021-40400?
CVE-2021-40400 specifically affects Gerbv version 2.7.0 and its development version prior to the patch.
What can an attacker accomplish with CVE-2021-40400?
An attacker can exploit CVE-2021-40400 to disclose sensitive information by crafting a malicious Gerber file.
Is there a patch available for CVE-2021-40400?
Yes, patches are available in the latest releases of Gerbv that resolve the issues associated with CVE-2021-40400.