Buffer overflow in P30 - CVE-2021-22327
Published: April 1, 2021
Vulnerability identifier: #VU51840
CSH Severity: Low
CVSS v4: 4.6 [CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:A/VC:N/VI:N/VA:L/SC:N/SI:N/SA:N]
CVE-ID: CVE-2021-22327
CWE-ID: CWE-119
Exploitation vector: Remote access
Exploit availability:
No public exploit available
Vulnerability details
The vulnerability allows a remote attacker to perform a denial of service (DoS) attack.
The vulnerability exists due to a boundary error when processing file parsing. A remote attacker can trigger memory corruption and cause a denial of service condition on the target system.
Affected software
P30
How to mitigate CVE-2021-22327
Install updates from vendor's website.
P30 - addressed in versions 11.0.0.118(C635E2R2P3), 11.0.0.120(C00E120R2P5), 11.0.0.128(C01E128R2P5), 11.0.0.138(C605E2R1P3), 11.0.0.138(C605E4R1P3), 11.0.0.138(C431E8R2P3), 11.0.0.138(C432E8R2P3), 11.0.0.138(C461E4R3P3), 11.0.0.138(C636E4R3P3), 11.0.0.138(C10E4R5P3), 11.0.0.138(C185E4R7P3)