PT-2021-19719 · Mit · Universal Turing Machine
Pontus Johnson
·
Published
2021-05-10
·
Updated
2024-08-23
·
CVE-2021-32471
CVSS v2.0
7.2
High
| Vector | AV:L/AC:L/Au:N/C:C/I:C/A:C |
Name of the Vulnerable Software and Affected Versions:
Marvin Minsky 1967 Turing Machine (affected versions not specified)
Description:
The issue concerns insufficient input validation in the Marvin Minsky 1967 implementation of the Universal Turing Machine, allowing users to execute arbitrary code via crafted data. For instance, a tape head may have an unexpected location after processing input composed of As and Bs instead of 0s and 1s. It is noted that the discoverer states this issue has no real-world implications.
Recommendations:
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Exploit
RCE
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Universal Turing Machine