Heap-Based Buffer Overflow Vulnerability in jhead by Red Hat
CVE-2021-3496

7.8HIGH

Key Information:

Status
Vendor
CVE Published:
22 April 2021

What is CVE-2021-3496?

A heap-based buffer overflow vulnerability exists in the jhead utility, particularly in the Get16u() function within exif.c. This issue can be triggered when jhead processes specially crafted files, leading to potential exploitation and the execution of arbitrary code. Users and administrators are advised to review the available patches and update their software to mitigate any risks associated with this vulnerability.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

jhead jhead 3.06.0.1

References

CVSS V3.1

Score:
7.8
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
Required
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.