PT-2022-13748 · Pesign+1 · Pesign+1
Pedro Sampaio
·
Published
2022-04-29
·
Updated
2024-05-20
·
CVE-2022-1249
CVSS v3.1
3.3
Low
| Vector | AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L |
Name of the Vulnerable Software and Affected Versions
pesign (affected versions not specified)
Description
A NULL pointer dereference flaw was found in pesign's
cms set pw data() function of the cms common.c file. The function fails to handle the NULL pwdata invocation from daemon.c, which leads to an explicit NULL dereference and crash on all attempts to daemonize pesign.Recommendations
At the moment, there is no information about a newer version that contains a fix for this vulnerability.
NULL Pointer Dereference
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Alt Linux
Pesign