CVE-2021-26635

In the code that verifies the file size in the ark library, it is possible to manipulate the offset read from the target file due to the wrong use of the data type. An attacker could use this vulnerability to cause a stack buffer overflow and as a result, perform an attack such as remote code execution.
Configurations

Configuration 1 (hide)

cpe:2.3:a:bandisoft:ark_library:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2022-06-02 14:15

Updated : 2024-11-21 05:56


NVD link : CVE-2021-26635

Mitre link : CVE-2021-26635

CVE.ORG link : CVE-2021-26635


JSON object : View

Products Affected

bandisoft

  • ark_library
CWE
CWE-121

Stack-based Buffer Overflow

CWE-843

Access of Resource Using Incompatible Type ('Type Confusion')