CVE-2021-43086: Buffer Overflow
Published Feb 28, 2022
·Updated
ARM astcenc 3.2.0 is vulnerable to Buffer Overflow. When the compression function of the astc-encoder project with -cl option was used, a stack-buffer-overflow occurred in function encodeise() in function compresssymbolicblockforpartition2planes() in "/Source/astcenccompresssymbolic.cpp".
Affected Software
1 affected component
Arm Adaptive Scalable Texture Compression Encoder=3.2.0
Event History
Feb 28, 2022
CVE Published
via MITRE·02:06 PM
Data Sourced
via MITRE·02:06 PM
Description
Frequently Asked Questions
1
What is CVE-2021-43086?
CVE-2021-43086 is a vulnerability in ARM astcenc 3.2.0 that allows for a buffer overflow.
2
How severe is CVE-2021-43086?
CVE-2021-43086 has a severity rating of 9.8, which is classified as critical.
3
Which software versions are affected by CVE-2021-43086?
CVE-2021-43086 affects version 3.2.0 of Arm Adaptive Scalable Texture Compression Encoder.
4
What is the Common Weakness Enumeration (CWE) ID for CVE-2021-43086?
CVE-2021-43086 is associated with CWE-119 and CWE-787.
5
Is there a fix available for CVE-2021-43086?
Information about a fix for CVE-2021-43086 can be found in the referenced GitHub issue: https://github.com/ARM-software/astc-encoder/issues/296.