An untrusted pointer dereference in rec_db_destroy() at rec-db.c of GNU Recutils v1.8.90 can lead to a segmentation fault or application crash.
References
Link | Resource |
---|---|
https://lists.gnu.org/archive/html/bug-recutils/2021-12/msg00009.html | Exploit Mailing List Vendor Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/VRSXSN2XF6PX74WDYVV26TQMYIFAEQ3T/ | Mailing List Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/TDVOFC3HTBG7DF2PZTEXRMG4CV2F55UF/ | Mailing List Third Party Advisory |
Information
Published : 2022-01-14 12:15
Updated : 2022-09-29 19:35
NVD link : CVE-2021-46019
Mitre link : CVE-2021-46019
JSON object : View
CWE
CWE-476
NULL Pointer Dereference
Products Affected
gnu
- recutils
fedoraproject
- fedora