7.5
CVSSv3

CVE-2021-43311

Published: 24/03/2023 Updated: 28/03/2023
CVSS v3 Base Score: 7.5 | Impact Score: 3.6 | Exploitability Score: 3.9
VMScore: 0

Vulnerability Summary

A heap-based buffer overflow exists in upx, during the generic pointer 'p' points to an inaccessible address in func get_le32(). The problem is essentially caused in PackLinuxElf32::elf_lookup() at p_lx_elf.cpp:5382.

Vulnerable Product Search on Vulmon Subscribe to Product

upx project upx