First published: Mon Feb 28 2022(Updated: )
ARM astcenc 3.2.0 is vulnerable to Buffer Overflow. When the compression function of the astc-encoder project with -cl option was used, a stack-buffer-overflow occurred in function encode_ise() in function compress_symbolic_block_for_partition_2planes() in "/Source/astcenc_compress_symbolic.cpp".
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Arm Adaptive Scalable Texture Compression Encoder | =3.2.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-43086 is a vulnerability in ARM astcenc 3.2.0 that allows for a buffer overflow.
CVE-2021-43086 has a severity rating of 9.8, which is classified as critical.
CVE-2021-43086 affects version 3.2.0 of Arm Adaptive Scalable Texture Compression Encoder.
CVE-2021-43086 is associated with CWE-119 and CWE-787.
Information about a fix for CVE-2021-43086 can be found in the referenced GitHub issue: https://github.com/ARM-software/astc-encoder/issues/296.