Description
Many API function codes receive raw pointers remotely from the user and trust these pointers as valid in-bound memory regions. An attacker can manipulate API functions by writing arbitrary data into the resolved address of a raw pointer.
Analysis and contextual insights are available on OpenCVE Cloud.
Remediation
Vendor Solution
AUVESY recommends upgrading Versiondog to Version 8.1 or later (login required).
Tracking
Sign in to view the affected projects.
Advisories
| Source | ID | Title |
|---|---|---|
EUVD |
EUVD-2021-24931 | Many API function codes receive raw pointers remotely from the user and trust these pointers as valid in-bound memory regions. An attacker can manipulate API functions by writing arbitrary data into the resolved address of a raw pointer. |
References
| Link | Providers |
|---|---|
| https://us-cert.cisa.gov/ics/advisories/icsa-21-292-01 |
|
History
Mon, 16 Sep 2024 17:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Title | AUVESY Versiondog | AUVESY Versiondog |
Status: PUBLISHED
Assigner: icscert
Published:
Updated: 2024-09-16T17:28:11.318Z
Reserved: 2021-08-10T00:00:00.000Z
Link: CVE-2021-38479
No data.
Status : Modified
Published: 2021-10-22T12:15:08.947
Modified: 2024-11-21T06:17:12.257
Link: CVE-2021-38479
No data.
OpenCVE Enrichment
No data.
Weaknesses
EUVD