First published: Fri Mar 24 2023(Updated: )
A heap-based buffer overflow was discovered in upx, during the generic pointer 'p' points to an inaccessible address in func get_le64().
Credit: patrick@puiterwijk.org
Affected Software | Affected Version | How to fix |
---|---|---|
UPX | <4.0.0 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2021-43316 is a heap-based buffer overflow vulnerability discovered in the UPX software.
CVE-2021-43316 has a severity rating of high (7.5).
The UPX software version 4.0.0 and earlier is affected by CVE-2021-43316.
The vulnerability manifests as a heap-based buffer overflow when the 'p' pointer points to an inaccessible address in the function get_le64().
At the moment, there is no fix available for CVE-2021-43316. Users are advised to follow the recommended mitigation measures.