VDB
CVE-2021-43315
CVE-2021-43315
PUBLISHED
A heap-based buffer overflows was discovered in upx, during the generic pointer 'p' points to an inaccessible address in func get_le32(). The problem is essentially caused in PackLinuxElf32::elf_lookup() at p_lx_elf.cpp:5349
EPSS 0.35% · 57.7th percentile
Risk Scores
EPSS Score
0.35%
57.7th percentile
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| upx | upx | 0 |
| n/a | upx | upx before 4.0.0-git-c6b9e3c62d15 |
Exploit Intelligence
- https://github.com/upx/upx/issues/380 (nist-nvd)
Timeline
- Mar 24, 2023 CVE Published
- Mar 25, 2023 EPSS Score
- May 2, 2023 EPSS Score
- Jun 10, 2023 EPSS Score
- Jul 18, 2023 EPSS Score
- Aug 25, 2023 EPSS Score
- Oct 3, 2023 EPSS Score
- Nov 10, 2023 EPSS Score
- Dec 18, 2023 EPSS Score
- Jan 26, 2024 EPSS Score
- Mar 4, 2024 EPSS Score
- Apr 11, 2024 EPSS Score