First published: Tue May 31 2022(Updated: )
An issue was discovered in swftools through 20201222. A NULL pointer dereference exists in the function swf_GetBits() located in rfxswf.c. It allows an attacker to cause Denial of Service.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
SWFTools | <=2020-12-22 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-42198 is classified as a Denial of Service vulnerability due to a NULL pointer dereference.
To mitigate CVE-2021-42198, update to a version of SWFTools released after 2020-12-22.
CVE-2021-42198 can result in a Denial of Service, affecting the availability of the affected software.
CVE-2021-42198 affects all versions of SWFTools up to and including 2020-12-22.
While specific exploit code details for CVE-2021-42198 were not provided, the nature of the vulnerability suggests it can be triggered to cause service disruption.