CVE-2021-44483: Input Validation
An issue was discovered in YottaDB through r1.32 and V7.0-000. A lack of input validation in calls to ebdiv in srport/ebmuldiv.c allows attackers to crash the application by performing a divide by zero.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2021-44483?
CVE-2021-44483 is a vulnerability discovered in YottaDB through r1.32 and V7.0-000 that allows attackers to crash the application by performing a Divide By Zero.
What is the severity of CVE-2021-44483?
The severity of CVE-2021-44483 is high, with a CVSS score of 7.5.
Which software versions are affected by CVE-2021-44483?
CVE-2021-44483 affects Fisglobal Gt.m version 7.0-000 and Yottadb Yottadb version up to 1.32.
How can an attacker exploit CVE-2021-44483?
An attacker can exploit CVE-2021-44483 by performing a Divide By Zero in calls to eb_div in sr_port/eb_muldiv.c, which can crash the application.
Is there a fix available for CVE-2021-44483?
There is currently no fix available for CVE-2021-44483. It is recommended to update to a newer version of YottaDB once a fix is released.