Vulnerabilities > CVE-2021-44489 - Integer Underflow (Wrap or Wraparound) vulnerability in multiple products
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
HIGH Summary
An issue was discovered in YottaDB through r1.32 and V7.0-000. Using crafted input, attackers can cause an integer underflow of the size of calls to memset in op_fnj3 in sr_port/op_fnj3.c in order to cause a segmentation fault and crash the application. This is a "- digs" subtraction.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 14 | |
Application | 1 |