PT-2021-19719 · Mit · Universal Turing Machine

Pontus Johnson

·

Published

2021-05-10

·

Updated

2024-08-23

·

CVE-2021-32471

CVSS v2.0

7.2

High

VectorAV:L/AC:L/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions: Marvin Minsky 1967 Turing Machine (affected versions not specified)
Description: The issue concerns insufficient input validation in the Marvin Minsky 1967 implementation of the Universal Turing Machine, allowing users to execute arbitrary code via crafted data. For instance, a tape head may have an unexpected location after processing input composed of As and Bs instead of 0s and 1s. It is noted that the discoverer states this issue has no real-world implications.
Recommendations: At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

RCE

Weakness Enumeration

Related Identifiers

CVE-2021-32471

Affected Products

Universal Turing Machine