Vulnerability Description
ARM astcenc 3.2.0 is vulnerable to Buffer Overflow. When the compression function of the astc-encoder project with -cl option was used, a stack-buffer-overflow occurred in function encode_ise() in function compress_symbolic_block_for_partition_2planes() in "/Source/astcenc_compress_symbolic.cpp".
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Arm | Adaptive Scalable Texture Compression Encoder | 3.2.0 |
Related Weaknesses (CWE)
References
- https://github.com/ARM-software/astc-encoder/issues/296.Broken LinkExploitIssue Tracking
- https://github.com/ARM-software/astc-encoder/issues/296.Broken LinkExploitIssue Tracking
FAQ
What is CVE-2021-43086?
CVE-2021-43086 is a vulnerability with a CVSS score of 9.8 (CRITICAL). ARM astcenc 3.2.0 is vulnerable to Buffer Overflow. When the compression function of the astc-encoder project with -cl option was used, a stack-buffer-overflow occurred in function encode_ise() in fun...
How severe is CVE-2021-43086?
CVE-2021-43086 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2021-43086?
Check the references section above for vendor advisories and patch information. Affected products include: Arm Adaptive Scalable Texture Compression Encoder.