9.8
CVSSv3

CVE-2021-31873

Published: 30/04/2021 Updated: 07/11/2023
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
CVSS v3 Base Score: 9.8 | Impact Score: 5.9 | Exploitability Score: 3.9
VMScore: 668
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

An issue exists in klibc prior to 2.0.9. Additions in the malloc() function may result in an integer overflow and a subsequent heap buffer overflow.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

klibc project klibc

debian debian linux 9.0

Vendor Advisories

Several security issues were fixed in klibc ...
Debian Bug report logs - #989505 Multiple security issues (CVE-2021-31870, CVE-2021-31871, CVE-2021-31872, CVE-2021-31873) Package: src:klibc; Maintainer for src:klibc is Debian Kernel Team <debian-kernel@listsdebianorg>; Reported by: Ben Hutchings <ben@decadentorguk> Date: Sat, 5 Jun 2021 18:18:01 UTC Severity: ...

Mailing Lists

I have released version 209  This is available in the git repository at:     gitkernelorg/pub/scm/libs/klibc/klibcgit and as a tarball at:     mirrorskernelorg/pub/linux/libs/klibc/20/ Security fixes: - Integer overflows in heap functions (CVE-2021-31870, CVE-2021-31873) - Integer over ...