Lucene search

K
ubuntucveUbuntu.comUB:CVE-2021-32435
HistoryMar 10, 2022 - 12:00 a.m.

CVE-2021-32435

2022-03-1000:00:00
ubuntu.com
ubuntu.com
20
cve-2021-32435
stack-based buffer overflow
abcm2ps
parse.c
denial of service
unix
remote attackers

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

EPSS

0.005

Percentile

77.5%

Stack-based buffer overflow in the function get_key in parse.c of abcm2ps
v8.14.11 allows remote attackers to cause a Denial of Service (DoS) via
unspecified vectors.

OSVersionArchitecturePackageVersionFilename
ubuntu18.04noarchabcm2ps< 7.8.9-1+deb9u1build0.18.04.1UNKNOWN
ubuntu20.04noarchabcm2ps< 8.14.6-0.1ubuntu0.1~esm1UNKNOWN
ubuntu22.04noarchabcm2ps< 8.14.11-0.1ubuntu0.1~esm1UNKNOWN
ubuntu16.04noarchabcm2ps< 7.8.9-1ubuntu0.16.04.1~esm1UNKNOWN

CVSS2

4.3

Attack Vector

NETWORK

Attack Complexity

MEDIUM

Authentication

NONE

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

PARTIAL

AV:N/AC:M/Au:N/C:N/I:N/A:P

CVSS3

5.5

Attack Vector

LOCAL

Attack Complexity

LOW

Privileges Required

NONE

User Interaction

REQUIRED

Scope

UNCHANGED

Confidentiality Impact

NONE

Integrity Impact

NONE

Availability Impact

HIGH

CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H

EPSS

0.005

Percentile

77.5%