An out-of-bounds write vulnerability exists in the drill format T-code tool number functionality of Gerbv 2.7.0, dev (commit b5f1eacd), and the forked version of Gerbv (commit 71493260). A specially-crafted drill file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.
The product does not handle or incorrectly handles an exceptional condition.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Gerbv | Gerbv_project | 2.7.0 (including) | 2.7.0 (including) |
Gerbv | Gerbv_project | 2.7.0-dev (including) | 2.7.0-dev (including) |
Gerbv | Gerbv_project | 2.7.0-forked_dev (including) | 2.7.0-forked_dev (including) |
Gerbv | Ubuntu | bionic | * |
Gerbv | Ubuntu | esm-apps/bionic | * |
Gerbv | Ubuntu | esm-apps/jammy | * |
Gerbv | Ubuntu | esm-apps/xenial | * |
Gerbv | Ubuntu | focal | * |
Gerbv | Ubuntu | hirsute | * |
Gerbv | Ubuntu | impish | * |
Gerbv | Ubuntu | trusty | * |
Gerbv | Ubuntu | xenial | * |