CVE-2021-0561

Name
CVE-2021-0561
Description
In append_to_verify_fifo_interleaved_ of stream_encoder.c, there is a possible out of bounds write due to a missing bounds check. This could lead to local information disclosure with no additional execution privileges needed. User interaction is not needed for exploitation.Product: AndroidVersions: Android-11Android ID: A-174302683
NVD Severity
medium
Other trackers
Mailing lists
Exploits
Forges
GitHub (code, issues), Aports (code, issues)

References

Type URI
MISC https://source.android.com/security/bulletin/pixel/2021-06-01
Mailing List https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/EWXBVMPPSL377I7YM55ZYXVKVMYOKES2/
Mailing List https://lists.debian.org/debian-lts-announce/2022/03/msg00022.html
Mailing List https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/Q4Y7BW35TGNFYBYBSBDSGLUJHHTYEUSG/

Match rules

CPE URI Source package Min version Max version
cpe:2.3:o:google:android:11.0:*:*:*:*:*:*:* android == None == 11.0

Vulnerable and fixed packages

Source package Branch Version Maintainer Status
flac edge-main 1.3.4-r0 Natanael Copa <ncopa@alpinelinux.org> fixed
flac 3.22-main 1.3.4-r0 None fixed
flac 3.21-main 1.3.4-r0 None fixed
flac 3.20-main 1.3.4-r0 None fixed
flac 3.19-main 1.3.4-r0 None fixed
flac 3.18-main 1.3.4-r0 None fixed
flac 3.17-main 1.3.4-r0 None fixed
flac 3.12-main 1.3.4-r0 Natanael Copa <ncopa@alpinelinux.org> fixed