REDHAT-BUG-2051943: Medium severity Sourceforge gdisk vulnerability

Published Feb 8, 2022
·
Updated

The potential out of bounds write in ReadLogicalParts of basicmbr.cc due to missing bounds check in gdisk utility. Exploitation requires the use of a malicious storage (such as: USB) device that could cause a crash and possibly allows local privilege escalation.

References: https://packetstormsecurity.com/files/165869/USN-5262-1 https://sourceforge.net/p/gptfdisk/code/ci/f523bbc0c2437fe259aa3aff5e819e24101aee29

Affected Software

1 affected component
Sourceforge gdisk

Event History

Feb 8, 2022
Data Sourced
via Red Hat·11:21 AM
DescriptionSeverityAffected Software

Frequently Asked Questions

1

What is the severity of REDHAT-BUG-2051943?

REDHAT-BUG-2051943 has a high severity rating due to its potential for causing crashes and local privilege escalation.

2

How do I fix REDHAT-BUG-2051943?

To fix REDHAT-BUG-2051943, users should apply the latest security patches provided by Red Hat for the gdisk utility.

3

What causes the vulnerability in REDHAT-BUG-2051943?

The vulnerability in REDHAT-BUG-2051943 is caused by an out of bounds write in ReadLogicalParts due to missing bounds checks in the gdisk utility.

4

What could happen if REDHAT-BUG-2051943 is exploited?

If exploited, REDHAT-BUG-2051943 could allow attackers to crash the system and gain local privileges on a compromised device.

5

Which software is affected by REDHAT-BUG-2051943?

REDHAT-BUG-2051943 affects the gdisk utility from Sourceforge.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203