Buffer overflow in Xmill - CVE-2021-21812
Published: August 12, 2021
Xmill
AT&T Labs
Description
The vulnerability allows a local user to execute arbitrary code on the target system.
The vulnerability exists due to a boundary error in the command-line-parsing HandleFileArg functionality within the "strcpy". A local user can use a specially crafted command-line argument, trigger memory corruption and execute arbitrary code on the target system.
Successful exploitation of this vulnerability may result in complete compromise of vulnerable system.