Search CVE reports


Toggle filters

11 – 19 of 19 results


CVE-2021-44500

Medium priority

Some fixes available 4 of 8

An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). A lack of input validation in calls to eb_div in sr_port/eb_muldiv.c allows attackers to crash the application by performing a divide by zero.

1 affected package

fis-gtm

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
fis-gtm Not affected Fixed Fixed Fixed Fixed
Show less packages

CVE-2021-44499

Medium priority
Ignored

An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, an attacker can cause a call to $Extract to force an signed integer holding the size of a buffer to take on a large...

1 affected package

fis-gtm

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
fis-gtm Not affected Ignored Ignored Ignored Ignored
Show less packages

CVE-2021-44498

Medium priority

Some fixes available 4 of 8

An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, attackers can cause a type to be incorrectly initialized in the function f_incr in sr_port/f_incr.c and cause a crash...

1 affected package

fis-gtm

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
fis-gtm Not affected Fixed Fixed Fixed Fixed
Show less packages

CVE-2021-44497

Medium priority
Ignored

An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, can cause the bounds of a for loop to be miscalculated, which leads to a use after free condition a pointer is pushed...

1 affected package

fis-gtm

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
fis-gtm Not affected Ignored Ignored Ignored Ignored
Show less packages

CVE-2021-44496

Medium priority
Ignored

An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, an attacker can control the size variable and buffer that is passed to a call to memcpy. An attacker can use this to...

1 affected package

fis-gtm

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
fis-gtm Not affected Ignored Ignored Ignored Ignored
Show less packages

CVE-2021-44495

Medium priority
Ignored

An issue was discovered in YottaDB through r1.32 and V7.0-000 and FIS GT.M through V7.0-000. Using crafted input, an attacker can cause a NULL pointer dereference after calls to ZPrint.

1 affected package

fis-gtm

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
fis-gtm Not affected Ignored Ignored Ignored Ignored
Show less packages

CVE-2021-44494

Medium priority
Ignored

An issue was discovered in YottaDB through r1.32 and V7.0-000 and FIS GT.M through V7.0-000. Using crafted input, an attacker can cause calls to ZRead to crash due to a NULL pointer dereference.

1 affected package

fis-gtm

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
fis-gtm Not affected Ignored Ignored Ignored Ignored
Show less packages

CVE-2021-44493

Medium priority
Ignored

An issue was discovered in YottaDB through r1.32 and V7.0-000 and FIS GT.M through V7.0-000. Using crafted input, an attacker can cause a call to $Extract to force an signed integer holding the size of a buffer to take on a large...

1 affected package

fis-gtm

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
fis-gtm Not affected Ignored Ignored Ignored Ignored
Show less packages

CVE-2021-44492

Medium priority

Some fixes available 4 of 8

An issue was discovered in YottaDB through r1.32 and V7.0-000 and FIS GT.M through V7.0-000. Using crafted input, attackers can cause a type to be incorrectly initialized in the function f_incr in sr_port/f_incr.c and cause a...

1 affected package

fis-gtm

Package 24.04 LTS 22.04 LTS 20.04 LTS 18.04 LTS 16.04 LTS
fis-gtm Not affected Fixed Fixed Fixed Fixed
Show less packages