Lucene search

K
osvGoogleOSV:CVE-2021-40394
HistoryDec 22, 2021 - 7:15 p.m.

CVE-2021-40394

2021-12-2219:15:11
Google
osv.dev
7
rs-274x aperture macro
gerbv 2.7.0
code execution
gerber file
malicious file
security vulnerability

AI Score

7

Confidence

Low

EPSS

0.012

Percentile

85.7%

An out-of-bounds write vulnerability exists in the RS-274X aperture macro variables handling functionality of Gerbv 2.7.0 and dev (commit b5f1eacd) and the forked version of Gerbv (commit 71493260). A specially-crafted gerber file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.

AI Score

7

Confidence

Low

EPSS

0.012

Percentile

85.7%