A use after free in cleanup_index in index.c in Halibut 1.2 allows an attacker to cause a segmentation fault or possibly have other unspecified impact via a crafted text document.
References
Link | Resource |
---|---|
https://carteryagemann.com/halibut-case-study.html#poc-halibut-text-uaf | Exploit Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/CC7UZ7NRXDA7YSCSGWE2CBQM7OZS3K2R/ | Mailing List Third Party Advisory |
Information
Published : 2022-05-24 12:15
Updated : 2022-11-04 09:42
NVD link : CVE-2021-42612
Mitre link : CVE-2021-42612
JSON object : View
CWE
CWE-416
Use After Free
Products Affected
halibut_project
- halibut
fedoraproject
- fedora