CVE-2020-36149

Severity CVSS v4.0:
Pending analysis
Type:
CWE-476 NULL Pointer Dereference
Publication date:
08/02/2021
Last modified:
07/11/2023

Description

Incorrect handling of input data in changeAttribute function in the libmysofa library 0.5 - 1.1 will lead to NULL pointer dereference and segmentation fault error in case of restrictive memory protection or near NULL pointer overwrite in case of no memory restrictions (e.g. in embedded environments).

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:symonics:libmysofa:*:*:*:*:*:*:*:* 0.5 (including) 1.1 (including)
cpe:2.3:o:fedoraproject:fedora:32:*:*:*:*:*:*:*