Incorrect handling of input data in verifyAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault error in case of restrictive memory protection or near NULL pointer overwrite in case of no memory restrictions (e.g. in embedded environments).
References
Link | Resource |
---|---|
https://github.com/hoene/libmysofa/issues/138 | Exploit Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/RQLNZOVVONQSZZJHQVZT6NMOUUDMGBBR/ | Mailing List Patch Third Party Advisory |
Information
Published : 2021-02-08 13:15
Updated : 2021-03-09 07:52
NVD link : CVE-2020-36148
Mitre link : CVE-2020-36148
JSON object : View
CWE
CWE-476
NULL Pointer Dereference
Products Affected
symonics
- libmysofa
fedoraproject
- fedora