CVE-2021-33451

An issue was discovered in lrzip version 0.641. There are memory leaks in fill_buffer() in stream.c.
References
Link Resource
https://gist.github.com/Clingto/bb632c0c463f4b2c97e4f65f751c5e6d Exploit Third Party Advisory
https://github.com/ckolivas/lrzip/issues/198 Exploit Issue Tracking Third Party Advisory
Configurations

Configuration 1 (hide)

cpe:2.3:a:long_range_zip_project:long_range_zip:0.641:*:*:*:*:*:*:*

History

01 Aug 2022, 13:46

Type Values Removed Values Added
References (MISC) https://gist.github.com/Clingto/bb632c0c463f4b2c97e4f65f751c5e6d - (MISC) https://gist.github.com/Clingto/bb632c0c463f4b2c97e4f65f751c5e6d - Exploit, Third Party Advisory
References (MISC) https://github.com/ckolivas/lrzip/issues/198 - (MISC) https://github.com/ckolivas/lrzip/issues/198 - Exploit, Issue Tracking, Third Party Advisory
CPE cpe:2.3:a:long_range_zip_project:long_range_zip:0.641:*:*:*:*:*:*:*
CWE CWE-401
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 5.5
First Time Long Range Zip Project
Long Range Zip Project long Range Zip

26 Jul 2022, 13:27

Type Values Removed Values Added
New CVE

Information

Published : 2022-07-26 13:15

Updated : 2023-12-10 14:35


NVD link : CVE-2021-33451

Mitre link : CVE-2021-33451

CVE.ORG link : CVE-2021-33451


JSON object : View

Products Affected

long_range_zip_project

  • long_range_zip
CWE
CWE-401

Missing Release of Memory after Effective Lifetime