PT-2021-14806 · Poweriso · Poweriso

Piotr Bania

·

Published

2021-06-29

·

Updated

2022-09-30

·

CVE-2021-21871

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions PowerISO version 7.9
Description A memory corruption issue exists in the DMG File Format Handler functionality. This can be triggered by a specially crafted DMG file, leading to an out-of-bounds write. An attacker can exploit this by providing a malicious file.
Recommendations For PowerISO version 7.9, update to the latest bug-release version to resolve the issue. As a temporary workaround, consider avoiding the use of the DMG File Format Handler functionality until the update is applied.

Exploit

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2021-21871

Affected Products

Poweriso