CVE-2021-45417

Related Vulnerabilities: CVE-2021-45417  

A heap-based buffer overflow vulnerability in in the base64 functions of AIDE, an advanced intrusion detection system. An attacker could crash the program and possibly execute arbitrary code through large (<16k) extended file attributes or ACL.

Description

A heap-based buffer overflow vulnerability in in the base64 functions of AIDE, an advanced intrusion detection system. An attacker could crash the program and possibly execute arbitrary code through large (<16k) extended file attributes or ACL.

Additional Information

  • Bugzilla 2041489: CVE-2021-45417 aide: heap-based buffer overflow on outputs larger than B64_BUF
  • CWE-119: Improper Restriction of Operations within the Bounds of a Memory Buffer
  • FAQ: Frequently asked questions about CVE-2021-45417