CVE-2021-33480 - log back

CVE-2021-33480 edited at 21 May 2021 08:44:29
Severity
- Unknown
+ Medium
Remote
- Unknown
+ Local
Type
- Unknown
+ Arbitrary code execution
Description
+ A use-after-free vulnerability was discovered in gocr through 0.53-20200802 in context_correction() in pgm2asc.c.
References
+ https://bugzilla.redhat.com/show_bug.cgi?id=1962854
+ https://sourceforge.net/p/jocr/bugs/40/
+ https://sourceforge.net/p/jocr/bugs/40/attachment/use-after-free-context_correction-pgm2asc-2857.zip
+ https://sourceforge.net/p/jocr/bugs/41/
+ https://sourceforge.net/p/jocr/bugs/41/attachment/use-after-free-context_correction-pgm2asc-2817.zip
CVE-2021-33480 created at 21 May 2021 08:41:57