CVE-2021-33640

After tar_close(), libtar.c releases the memory pointed to by pointer t. After tar_close() is called in the list() function, it continues to use pointer t: free_longlink_longname(t->th_buf) . As a result, the released memory is used (use-after-free).
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:o:huawei:openeuler:20.03:sp2:*:*:lts:*:*:*
cpe:2.3:o:huawei:openeuler:20.03:sp1:*:*:lts:*:*:*
cpe:2.3:o:huawei:openeuler:22.03:*:*:*:lts:*:*:*

Configuration 2 (hide)

OR cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:37:*:*:*:*:*:*:*

Information

Published : 2022-12-19 08:15

Updated : 2022-12-29 10:54


NVD link : CVE-2021-33640

Mitre link : CVE-2021-33640


JSON object : View

CWE
CWE-416

Use After Free

Advertisement

dedicated server usa

Products Affected

fedoraproject

  • fedora

huawei

  • openeuler