Vulnerabilities > CVE-2021-27219 - Incorrect Conversion between Numeric Types vulnerability in multiple products

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
NONE
Integrity impact
NONE
Availability impact
HIGH

Summary

An issue was discovered in GNOME GLib before 2.66.6 and 2.67.x before 2.67.3. The function g_bytes_new has an integer overflow on 64-bit platforms due to an implicit cast from 64 bits to 32 bits. The overflow could potentially lead to memory corruption.

Vulnerable Configurations

Part Description Count
Application
Gnome
464
Application
Netapp
3
OS
Fedoraproject
2
OS
Debian
1
OS
Broadcom
1