CVE-2021-26826 - log back

CVE-2021-26826 edited at 08 Feb 2021 19:22:14
Severity
- Unknown
+ Medium
Remote
- Unknown
+ Remote
Type
- Unknown
+ Arbitrary code execution
Description
+ A stack overflow issue exists in Godot Engine version 3.2.3 and is caused by improper boundary checks when loading TGA image files. Depending on the context of the application, the attack vector can be local or remote, and can lead to code execution and/or a system crash.
References
+ https://github.com/godotengine/godot/pull/45702
+ https://github.com/godotengine/godot/commit/113b5ab1c45c01b8e6d54d13ac8876d091f883a8
Notes
CVE-2021-26826 created at 08 Feb 2021 19:17:06