CVE-2021-36089

Updated: 2024-11-24 03:26:50.096369

Description:

Grok 7.6.6 through 9.2.0 has a heap-based buffer overflow in grk::FileFormatDecompress::apply_palette_clr (called from grk::FileFormatDecompress::applyColour).


Links NIST CIRCL RHEL Ubuntu

Severity

Severity Score
CVSS Version 2.x MEDIUM 6.8
CVSS Version 3.x HIGH 7.8

Status

OS name Project name Version Score Severity Status Errata Last updated

Statement

CentOS 6 ELS kernel 2.6.32 7.8 HIGH Ignored 2021-12-09 07:57:23
CloudLinux 6 ELS kernel 2.6.32 7.8 HIGH Ignored 2021-12-09 07:57:23
Oracle Linux 6 ELS kernel 2.6.32 7.8 HIGH Ignored 2021-12-09 07:57:23
Ubuntu 16.04 ELS linux 4.4.0 7.8 HIGH Ignored 2021-12-09 07:57:23