CVE-2021-3700

NameCVE-2021-3700
DescriptionA use-after-free vulnerability was found in usbredir in versions prior to 0.11.0 in the usbredirparser_serialize() in usbredirparser/usbredirparser.c. This issue occurs when serializing large amounts of buffered write data in the case of a slow or blocked destination.
SourceCVE (at NVD; CERT, LWN, oss-sec, fulldisc, bugtraq, EDB, Metasploit, Red Hat, Ubuntu, Gentoo, SUSE bugzilla/CVE, Mageia, GitHub advisories/code/issues, web search, more)
ReferencesDLA-2958-1

Vulnerable and fixed packages

The table below lists information on source packages.

Source PackageReleaseVersionStatus
usbredir (PTS)buster, bullseye0.8.0-1vulnerable
bookworm, sid0.11.0-2fixed

The information below is based on the following data on fixed versions.

PackageTypeReleaseFixed VersionUrgencyOriginDebian Bugs
usbredirsourcestretch0.7.1-1+deb9u1DLA-2958-1
usbredirsource(unstable)0.11.0-1

Notes

[bullseye] - usbredir <no-dsa> (Minor issue)
[buster] - usbredir <no-dsa> (Minor issue)
https://gitlab.freedesktop.org/spice/usbredir/-/commit/03c519ff5831ba75120e00ebebbf1d5a1f7220ab (usbredir-0.11.0)

Search for package or bug name: Reporting problems