PT-2021-7703 · Inkscape+2 · Inkscape+2

Khangkito

+1

·

Published

2017-01-29

·

Updated

2022-10-14

·

CVE-2021-42704

CVSS v2.0

9.3

High

VectorAV:N/AC:M/Au:N/C:C/I:C/A:C
Name of the Vulnerable Software and Affected Versions Inkscape versions 0.19 through 0.91
Description The issue is related to an out-of-bounds write, which may allow an attacker to execute arbitrary code. This could potentially enable a remote attacker to access confidential data, compromise its integrity, and cause a denial of service.
Recommendations For Inkscape version 0.19, update to a version later than 0.19 to resolve the issue. For Inkscape version 0.91, update to a version later than 0.91 to resolve the issue. As a temporary workaround, consider restricting access to sensitive data and implementing additional security measures to minimize the risk of exploitation.

Exploit

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

ALT-PU-2017-1101
BDU:2023-01679
CVE-2021-42704

Affected Products

Alt Linux
Astra Linux
Inkscape