PT-2022-13748 · Pesign+1 · Pesign+1

Pedro Sampaio

·

Published

2022-04-29

·

Updated

2024-05-20

·

CVE-2022-1249

CVSS v3.1

3.3

Low

VectorAV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L
Name of the Vulnerable Software and Affected Versions pesign (affected versions not specified)
Description A NULL pointer dereference flaw was found in pesign's cms set pw data() function of the cms common.c file. The function fails to handle the NULL pwdata invocation from daemon.c, which leads to an explicit NULL dereference and crash on all attempts to daemonize pesign.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

NULL Pointer Dereference

Weakness Enumeration

Related Identifiers

ALT-PU-2023-4417
ALT-PU-2024-5107
ALT-PU-2024-7744
AZL-9655
CVE-2022-1249

Affected Products

Alt Linux
Pesign