7.5
CVSSv3

CVE-2021-27211

Published: 15/02/2021 Updated: 12/07/2022
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 446
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

steghide 0.5.1 relies on a certain 32-bit seed value, which makes it easier for malicious users to detect hidden data.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

steghide project steghide 0.5.1

Vendor Advisories

Debian Bug report logs - #983267 steghide: CVE-2021-27211 Package: src:steghide; Maintainer for src:steghide is Debian Security Tools <team+pkg-security@trackerdebianorg>; Reported by: Salvatore Bonaccorso <carnil@debianorg> Date: Sun, 21 Feb 2021 20:21:02 UTC Severity: important Tags: security, upstream Found in ...

Github Repositories

Exploit script for CVE-2021-27211

Stegcrack Stegcrack is an open-source program for exploiting a vulnerability in Steghide (specifically CVE-2021-27211) Stegcrack detects whether a given file contains data hidden with Steghide, and can sometimes fully extract the hidden data, all with no password Installation Clone this repository git clone githubcom/b4shfire/stegcrack

⚡ Worlds fastest steghide cracker, chewing through millions of passwords per second ⚡

⚡ Stegseek Stegseek is a lightning fast steghide cracker that can be used to extract hidden data from files It is built as a fork of the original steghide project and, as a result, it is thousands of times faster than other crackers and can run through the entirety of rockyoutxt* in under 2 seconds Stegseek can also be used to extract steghide metadata without a password,

⚡ Stegseek Stegseek is a lightning fast steghide cracker that can be used to extract hidden data from files It is built as a fork of the original steghide project and, as a result, it is thousands of times faster than other crackers and can run through the entirety of rockyoutxt* in under 2 seconds Stegseek can also be used to extract steghide metadata without a password,