CVE-2021-42702: Inkscape Access of Uninitialized Pointer
Published May 18, 2022
·Updated
Inkscape version 0.91 can access an uninitialized pointer, which may allow an attacker to have access to unauthorized information.
Affected Software
2 affected components
Inkscape Version 0.91
Inkscape Inkscape=0.91
Remediation
Information
Inkscape has fixed these vulnerabilities and recommends users update to Version Inkscape 1.0 or later.
Event History
May 18, 2022
CVE Published
via MITRE·04:24 PM
Data Sourced
via MITRE·04:24 PM
RemedyDescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2021-42702?
CVE-2021-42702 has a medium severity rating due to the potential for unauthorized information access.
2
How do I fix CVE-2021-42702?
To mitigate CVE-2021-42702, upgrade to a patched version of Inkscape that addresses this vulnerability.
3
What versions of Inkscape are affected by CVE-2021-42702?
CVE-2021-42702 affects Inkscape version 0.91.
4
Can CVE-2021-42702 be exploited remotely?
CVE-2021-42702 does not specifically indicate remote exploitation but may allow unauthorized access if targeted.
5
What type of vulnerability is CVE-2021-42702?
CVE-2021-42702 is a vulnerability that involves accessing an uninitialized pointer, leading to potential information disclosure.