CVE-2021-44509: Integer Underflow
An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, attackers can cause an integer underflow of the size of calls to memset in opfnj3 in srport/opfnj3.c in order to cause a segmentation fault and crash the application.
Affected Software
Remediation
Patch Available
Event History
Frequently Asked Questions
What is the severity of CVE-2021-44509?
CVE-2021-44509 has been classified as a high severity vulnerability due to its potential to cause application crashes and instability.
How do I fix CVE-2021-44509?
To fix CVE-2021-44509, upgrade FIS GT.M to version 7.0-002 or later, which addresses this integer underflow issue.
What software is affected by CVE-2021-44509?
CVE-2021-44509 affects FIS GT.M versions up to and including 7.0-000.
What kind of attack is facilitated by CVE-2021-44509?
CVE-2021-44509 allows attackers to exploit an integer underflow, leading to segmentation faults and application crashes.
When was CVE-2021-44509 discovered?
CVE-2021-44509 was discovered in the FIS GT.M software and documented in 2021.