Security Advisory

CVE-2021-42341

CVE vulnerability detail — eXtreme Datacenter Security Operations

Published 2021-10-14 05:01:07
Last updated 2024-08-04 03:30:38
Assigner mitre
State PUBLISHED

Description

checkpath in OpenRC before 0.44.7 uses the direct output of strlen() to allocate strings, which does not account for the 0 byte at the end of the string. This results in memory corruption. CVE-2021-42341 was introduced in git commit 63db2d99e730547339d1bdd28e8437999c380cae, which was introduced as part of OpenRC 0.44.0 development.