CVE-2021-44502: High severity yottadb vulnerability
Published Apr 15, 2022
·Updated
An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, an attacker can control the size of a memset that occurs in calls to utilformat in srunix/utiloutput.c.
Affected Software
2 affected componentsFixes available
Fisglobal Gt.m<=7.0-000
debian/fis-gtm<=6.3-014-3
7.0-005-17.1-006-1
Remediation
Patch Available
Event History
Apr 15, 2022
CVE Published
via MITRE·05:50 PM
Data Sourced
via MITRE·05:50 PM
Description
Apr 7, 2025
Data Sourced
via Launchpad·08:37 PM
Description
Apr 11, 2025
Data Sourced
via Ubuntu·08:38 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-44502?
CVE-2021-44502 has been classified as a vulnerability that could allow an attacker to exploit the affected system.
2
How do I fix CVE-2021-44502?
To fix CVE-2021-44502, upgrade to FIS GT.M version 7.0-002 or later.
3
What software is affected by CVE-2021-44502?
CVE-2021-44502 affects FIS GT.M through version 7.0-000.
4
What type of vulnerability is CVE-2021-44502?
CVE-2021-44502 is a vulnerability that allows an attacker to control memory operations through crafted input.
5
Can CVE-2021-44502 be exploited remotely?
Yes, CVE-2021-44502 can potentially be exploited by an attacker with the right crafted input.