Vulnerability Name: | CVE-2021-45931 (CCN-216495) | ||||||||||||
Assigned: | 2021-08-21 | ||||||||||||
Published: | 2021-08-21 | ||||||||||||
Updated: | 2022-10-28 | ||||||||||||
Summary: | HarfBuzz 2.9.0 has an out-of-bounds write in hb_bit_set_invertible_t::set (called from hb_sparseset_t<hb_bit_set_invertible_t>::set and hb_set_copy). | ||||||||||||
CVSS v3 Severity: | 6.5 Medium (CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H) 5.7 Medium (Temporal CVSS v3.1 Vector: CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C)
4.8 Medium (CCN Temporal CVSS v3.1 Vector: CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H/E:U/RL:O/RC:C)
| ||||||||||||
CVSS v2 Severity: | 4.3 Medium (CVSS v2 Vector: AV:N/AC:M/Au:N/C:N/I:N/A:P)
| ||||||||||||
Vulnerability Type: | CWE-787 | ||||||||||||
Vulnerability Consequences: | Denial of Service | ||||||||||||
References: | Source: MITRE Type: CNA CVE-2021-45931 Source: CCN Type: Google Security Research Issue 37425 harfbuzz:hb-subset-fuzzer: Crash in hb_bit_set_invertible_t::set Source: MISC Type: Exploit, Issue Tracking, Third Party Advisory https://bugs.chromium.org/p/oss-fuzz/issues/detail?id=37425 Source: XF Type: UNKNOWN harfbuzz-cve202145931-dos(216495) Source: MISC Type: Exploit, Third Party Advisory https://github.com/google/oss-fuzz-vulns/blob/main/vulns/harfbuzz/OSV-2021-1159.yaml Source: CCN Type: harfbuzz GIT Repository [set] Make all operators null-safe again Source: MISC Type: Patch, Third Party Advisory https://github.com/harfbuzz/harfbuzz/commit/d3e09bf4654fe5478b6dbf2b26ebab6271317d81 Source: FEDORA Type: Mailing List, Third Party Advisory FEDORA-2022-b3b5ac4053 Source: FEDORA Type: Mailing List, Third Party Advisory FEDORA-2022-a03b13b4d2 Source: FEDORA Type: Mailing List, Third Party Advisory FEDORA-2022-4bfa39df02 Source: GENTOO Type: Third Party Advisory GLSA-202209-11 Source: CCN Type: WhiteSource Vulnerability Database CVE-2021-45931 | ||||||||||||
Vulnerable Configuration: | Configuration 1: Configuration 2: Configuration CCN 1: ![]() | ||||||||||||
BACK |