CVE-2020-36149
Summary
| CVE | CVE-2020-36149 |
| State | PUBLIC |
| Assigner | [email protected] |
| Source Priority | CVE Program / NVD first with legacy fallback |
| Published | 2021-02-08 21:15:00 UTC |
| Updated | 2023-11-07 03:22:00 UTC |
| Description | Incorrect handling of input data in changeAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault error in case of restrictive memory protection or near NULL pointer overwrite in case of no memory restrictions (e.g. in embedded environments). |
NVD Known Affected Configurations (CPE 2.3)
References
| Reference | Source | Link | Tags |
|---|
| NULL pointer dereference in changeAttribute · Issue #137 · hoene/libmysofa · GitHub |
MISC |
github.com |
Exploit, Third Party Advisory |
| [SECURITY] Fedora 32 Update: libmysofa-1.2-4.fc32 - package-announce - Fedora Mailing-Lists |
|
lists.fedoraproject.org |
|
| [SECURITY] Fedora 32 Update: libmysofa-1.2-4.fc32 - package-announce - Fedora Mailing-Lists |
FEDORA |
lists.fedoraproject.org |
Mailing List, Third Party Advisory |
| CVE Program record |
CVE.ORG |
www.cve.org |
canonical |
| NVD vulnerability detail |
NVD |
nvd.nist.gov |
canonical, analysis |
No vendor comments have been submitted for this CVE.
Legacy QID Mappings
- 750304 OpenSUSE Security Update for libmysofa (openSUSE-SU-2021:0444-1)