VDB

CVE-2021-22545

CVE-2021-22545 PUBLISHED CVSS 7.5 HIGH

An attacker can craft a specific IdaPro *.i64 file that will cause the BinDiff plugin to load an invalid memory offset. This can allow the attacker to control the instruction pointer and execute arbitrary code. It is recommended to upgrade BinDiff 7

EPSS 0.21% · 11.2th percentile

Risk Scores

CVSS 3.1
7.5
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H
EPSS Score
0.21%
11.2th percentile

Affected Products

VendorProductVersions
googlebindiff0
Google LLCBindiffunspecified

Timeline

  • Jun 29, 2021 CVE Published
  • Jun 30, 2021 EPSS Score
  • Aug 29, 2021 EPSS Score
  • Oct 29, 2021 EPSS Score
  • Dec 28, 2021 EPSS Score
  • Feb 4, 2022 EPSS Score
  • Feb 26, 2022 EPSS Score
  • Apr 1, 2022 EPSS Score
  • Apr 28, 2022 EPSS Score
  • Jun 27, 2022 EPSS Score
  • Aug 27, 2022 EPSS Score
  • Oct 27, 2022 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›