← Back

CVE-2020-36148

nvd nist
Published: Feb 8, 2021Modified: Nov 21, 2024

JSON object

Loading...
6.5
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Exploitability: 2.8 / Impact: 3.6
Source: NVD

Description

Incorrect handling of input data in verifyAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault error in case of restrictive memory protection or near NULL pointer overwrite in case of no memory restrictions (e.g. in embedded environments).

Affected (2)

1 product
Libmysofa
1 product
Fedora
Configuration A
1 vulnerable
Vulnerable SoftwareAffected Versions
From 0.5 to 1.1
Configuration B
1 vulnerable
Vulnerable SoftwareAffected Versions
Version 32

Timeline

No history available yet.