CVE-2021-37231

EUVD-2021-23803
A stack-buffer-overflow occurs in Atomicparsley 20210124.204813.840499f through APar_readX() in src/util.cpp while parsing a crafted mp4 file because of the missing boundary check.
ProviderTypeBase ScoreAtk. VectorAtk. ComplexityPriv. RequiredVector
NISTPrimary
5.5 MEDIUM
LOCAL
LOW
NONE
CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Base Score
CVSS 3.x
EPSS Score
Percentile: 56%
Affected Products (NVD)
VendorProductVersion
atomicparsley_projectatomicparsley
20210124.204813.840499f:f
𝑥
= Vulnerable software versions
Debian logo
Debian Releases
Debian Product
Codename
atomicparsley
bookworm
20210715.151551.e7ad03a-1
ignored
bullseye
ignored
buster
ignored
sid
20240608.083822.1ed9031-1
fixed
stretch
ignored
trixie
20240608.083822.1ed9031-1
fixed
gtkpod
bookworm
ignored
bullseye
ignored
buster
ignored
stretch
ignored
Ubuntu logo
Ubuntu Releases
Ubuntu Product
Codename
atomicparsley
bionic
needs-triage
focal
needs-triage
hirsute
ignored
impish
ignored
jammy
needs-triage
kinetic
ignored
lunar
ignored
mantic
ignored
noble
needs-triage
trusty
needs-triage
xenial
needs-triage