VDB
CVE-2021-22545
CVE-2021-22545
PUBLISHED
CVSS 7.5 HIGH
An attacker can craft a specific IdaPro *.i64 file that will cause the BinDiff plugin to load an invalid memory offset. This can allow the attacker to control the instruction pointer and execute arbitrary code. It is recommended to upgrade BinDiff 7
EPSS 0.21% · 11.2th percentile
Risk Scores
CVSS 3.1
7.5
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H
EPSS Score
0.21%
11.2th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| bindiff | 0 | |
| Google LLC | Bindiff | unspecified |
Timeline
- Jun 29, 2021 CVE Published
- Jun 30, 2021 EPSS Score
- Aug 29, 2021 EPSS Score
- Oct 29, 2021 EPSS Score
- Dec 28, 2021 EPSS Score
- Feb 4, 2022 EPSS Score
- Feb 26, 2022 EPSS Score
- Apr 1, 2022 EPSS Score
- Apr 28, 2022 EPSS Score
- Jun 27, 2022 EPSS Score
- Aug 27, 2022 EPSS Score
- Oct 27, 2022 EPSS Score