VDB

CVE-2021-45940

CVE-2021-45940 PUBLISHED CVSS 6.5 MEDIUM

libbpf 0.6.0 and 0.6.1 has a heap-based buffer overflow (4 bytes) in __bpf_object__open (called from bpf_object__open_mem and bpf-object-fuzzer.c).

EPSS 0.16% · 36.5th percentile

Risk Scores

CVSS v3.1
6.5
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
EPSS Score
0.16%
36.5th percentile

Affected Products

VendorProductVersions
libbpf_projectlibbpf0.6.0, 0.6.1
n/an/an/a

Timeline

  • Dec 31, 2021 CVE Published
  • Jan 1, 2022 EPSS Score
  • Feb 24, 2022 EPSS Score
  • Apr 18, 2022 EPSS Score
  • Jun 11, 2022 EPSS Score
  • Aug 5, 2022 EPSS Score
  • Sep 27, 2022 EPSS Score
  • Nov 20, 2022 EPSS Score
  • Jan 13, 2023 EPSS Score
  • Mar 7, 2023 EPSS Score
  • Mar 8, 2023 EPSS Score
  • Apr 30, 2023 EPSS Score
Open in Interactive Console →
$ Console Community · 100/wk Open console ›