cbcvebase.
CVE-2021-32434
published 2022-03-10

CVE-2021-32434: abcm2ps v8.14.11 was discovered to contain an out-of-bounds read in the function calculate_beam at draw.c.

PriorityP419medium5.5CVSS 3.1
AVLACLPRNUIRSUCNINAH
EPSS
0.98%
58.8th percentile
abcm2ps v8.14.11 was discovered to contain an out-of-bounds read in the function calculate_beam at draw.c.

Affected

13 ranges
VendorProductVersion rangeFixed in
abcm2ps_projectabcm2ps
abcm2ps_projectabcm2ps>= 0 < 8.14.13-18.14.13-1
abcm2ps_projectabcm2ps>= 0 < 8.14.13-18.14.13-1
abcm2ps_projectabcm2ps>= 0 < 8.14.13-18.14.13-1
abcm2ps_projectabcm2ps>= 0 < 7.8.9-1+deb9u1build0.18.04.17.8.9-1+deb9u1build0.18.04.1
abcm2ps_projectabcm2ps>= 0 < 7.8.9-1ubuntu0.16.04.1~esm17.8.9-1ubuntu0.16.04.1~esm1
abcm2ps_projectabcm2ps>= 0 < 8.14.6-0.1ubuntu0.1~esm18.14.6-0.1ubuntu0.1~esm1
abcm2ps_projectabcm2ps>= 0 < 8.14.11-0.1ubuntu0.1~esm18.14.11-0.1ubuntu0.1~esm1
debianabcm2ps< abcm2ps 8.14.13-1 (bookworm)abcm2ps 8.14.13-1 (bookworm)
debiandebian_linux
fedoraprojectfedora
fedoraprojectfedora
fedoraprojectfedora

CVSS provenance

nvdv3.15.5MEDIUMCVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
nvdv2.04.3MEDIUMAV:N/AC:M/Au:N/C:N/I:N/A:P
osv9.8CRITICAL
vendor_ubuntu9.8CRITICAL
vendor_debian5.5LOW
Stop checking back — get the weekly exploitation signal.

Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.