CVE-2021-44510: High severity yottadb vulnerability
Published Apr 15, 2022
·Updated
An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, attackers can cause a calculation of the size of calls to memset in opfnj3 in srport/opfnj3.c to result in an extremely large value in order to cause a segmentation fault and crash the application.
Affected Software
2 affected componentsFixes available
Fisglobal Gt.m<=7.0-000
debian/fis-gtm<=6.3-014-3
7.0-005-17.1-006-1
Remediation
Patch Available
Event History
Apr 15, 2022
CVE Published
via MITRE·05:58 PM
Data Sourced
via MITRE·05:58 PM
Description
Apr 7, 2025
Data Sourced
via Launchpad·08:37 PM
Description
Apr 11, 2025
Data Sourced
via Ubuntu·08:38 PM
RemedyDescriptionSeverityAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2021-44510?
CVE-2021-44510 has a medium severity due to its potential to cause application crashes.
2
How do I fix CVE-2021-44510?
To fix CVE-2021-44510, upgrade FIS GT.M to version 7.0-002 or later.
3
What types of attacks are possible with CVE-2021-44510?
CVE-2021-44510 allows attackers to exploit input handling to cause segmentation faults.
4
What software is affected by CVE-2021-44510?
CVE-2021-44510 affects FIS GT.M versions up to and including 7.0-000.
5
Is CVE-2021-44510 related to YottaDB?
Yes, CVE-2021-44510 is related to the YottaDB code base.