Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

msrc логотип

CVE-2021-3697

Опубликовано: 05 окт. 2023
Источник: msrc
CVSS3: 7
EPSS Низкий

Описание

Описание отсутствует

EPSS

Процентиль: 21%
0.00067
Низкий

7 High

CVSS3

Связанные уязвимости

CVSS3: 7
ubuntu
больше 3 лет назад

A crafted JPEG image may lead the JPEG reader to underflow its data pointer, allowing user-controlled data to be written in heap. To a successful to be performed the attacker needs to perform some triage over the heap layout and craft an image with a malicious format and payload. This vulnerability can lead to data corruption and eventual code execution or secure boot circumvention. This flaw affects grub2 versions prior grub-2.12.

CVSS3: 7.5
redhat
больше 3 лет назад

A crafted JPEG image may lead the JPEG reader to underflow its data pointer, allowing user-controlled data to be written in heap. To a successful to be performed the attacker needs to perform some triage over the heap layout and craft an image with a malicious format and payload. This vulnerability can lead to data corruption and eventual code execution or secure boot circumvention. This flaw affects grub2 versions prior grub-2.12.

CVSS3: 7
nvd
больше 3 лет назад

A crafted JPEG image may lead the JPEG reader to underflow its data pointer, allowing user-controlled data to be written in heap. To a successful to be performed the attacker needs to perform some triage over the heap layout and craft an image with a malicious format and payload. This vulnerability can lead to data corruption and eventual code execution or secure boot circumvention. This flaw affects grub2 versions prior grub-2.12.

CVSS3: 7
debian
больше 3 лет назад

A crafted JPEG image may lead the JPEG reader to underflow its data po ...

CVSS3: 7
github
больше 3 лет назад

A crafted JPEG image may lead the JPEG reader to underflow its data pointer, allowing user-controlled data to be written in heap. To a successful to be performed the attacker needs to perform some triage over the heap layout and craft an image with a malicious format and payload. This vulnerability can lead to data corruption and eventual code execution or secure boot circumvention. This flaw affects grub2 versions prior grub-2.12.

EPSS

Процентиль: 21%
0.00067
Низкий

7 High

CVSS3