Incorrect handling of input data in changeAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault error in case of restrictive memory protection or near NULL pointer overwrite in case of no memory restrictions (e.g. in embedded environments).
References
Link | Resource |
---|---|
https://github.com/hoene/libmysofa/issues/137 | Exploit Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/RQLNZOVVONQSZZJHQVZT6NMOUUDMGBBR/ | Mailing List Third Party Advisory |
Information
Published : 2021-02-08 13:15
Updated : 2021-03-10 07:36
NVD link : CVE-2020-36149
Mitre link : CVE-2020-36149
JSON object : View
CWE
CWE-476
NULL Pointer Dereference
Products Affected
symonics
- libmysofa
fedoraproject
- fedora