Category Archives: Advisories

rizin-0.4.1-1.fc36

Read Time:8 Second

FEDORA-2022-ff2aa5643d

Packages in this update:

rizin-0.4.1-1.fc36

Update description:

Rebase to upstream version 0.4.1 to fix some security issues

Read More

CVE-2021-40647

Read Time:18 Second

In man2html 1.6g, a specific string being read in from a file will overwrite the size parameter in the top chunk of the heap. This at least causes the program to segmentation abort if the heap size parameter isn’t aligned correctly. In version before GLIBC version 2.29 and aligned correctly, it allows arbitrary write anywhere in the programs memory.

Read More

CVE-2021-40648

Read Time:15 Second

In man2html 1.6g, a filename can be created to overwrite the previous size parameter of the next chunk and the fd, bk, fd_nextsize, bk_nextsize of the current chunk. The next chunk is then freed later on, causing a freeing of an arbitrary amount of memory.

Read More