CVE-2021-33622
published 2021-06-15CVE-2021-33622: Sylabs Singularity 3.5.x and 3.6.x, and SingularityPRO before 3.5-8, has an Incorrect Check of a Function's Return Value.
PriorityP342critical9.8CVSS 3.1
AVNACLPRNUINSUCHIHAH
EPSS
1.26%
66.5th percentile
Sylabs Singularity 3.5.x and 3.6.x, and SingularityPRO before 3.5-8, has an Incorrect Check of a Function's Return Value.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| debian | singularity-container | < singularity-container 3.9.5+ds1-2 (sid) | singularity-container 3.9.5+ds1-2 (sid) |
| sylabs | singularity | >= 3.5.0 < 3.7.0 | 3.7.0 |
| sylabs | singularitypro | < 3.5-8 | 3.5-8 |
CVSS provenance
nvdv3.19.8CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
nvdv2.06.8MEDIUMAV:N/AC:M/Au:N/C:P/I:P/A:P
osv9.8CRITICAL
vendor_debian9.8CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
GHSA-cq54-mjwx-5pjw: Sylabs Singularity 3
ghsa_unreviewed·2022-05-24
CVE-2021-33622 [CRITICAL] CWE-754 GHSA-cq54-mjwx-5pjw: Sylabs Singularity 3
Sylabs Singularity 3.5.x and 3.6.x, and SingularityPRO before 3.5-8, has an Incorrect Check of a Function's Return Value.
OSV
CVE-2021-33622: Sylabs Singularity 3
osv·2021-06-15·CVSS 9.8
CVE-2021-33622 [CRITICAL] CVE-2021-33622: Sylabs Singularity 3
Sylabs Singularity 3.5.x and 3.6.x, and SingularityPRO before 3.5-8, has an Incorrect Check of a Function's Return Value.
Debian
CVE-2021-33622: singularity-container - Sylabs Singularity 3.5.x and 3.6.x, and SingularityPRO before 3.5-8, has an Inco...
vendor_debian·2021·CVSS 9.8
CVE-2021-33622 [CRITICAL] CVE-2021-33622: singularity-container - Sylabs Singularity 3.5.x and 3.6.x, and SingularityPRO before 3.5-8, has an Inco...
Sylabs Singularity 3.5.x and 3.6.x, and SingularityPRO before 3.5-8, has an Incorrect Check of a Function's Return Value.
Scope: local
sid: resolved (fixed in 3.9.5+ds1-2)
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
2021-06-15
Published