An issue was discovered in klibc before 2.0.9. Additions in the malloc() function may result in an integer overflow and a subsequent heap buffer overflow.
[
{
"source": "https://github.com/huolinjue/klibc/commit/a31ae8c508fc8d1bca4f57e9f9f88127572d5202",
"target": {
"file": "usr/klibc/malloc.c"
},
"digest": {
"line_hashes": [
"217924328770968556832553208148882712384",
"187361156840409739383989126867014420216",
"283857668055714559123873115374762873854"
],
"threshold": 0.9
},
"deprecated": false,
"signature_type": "Line",
"id": "CVE-2021-31873-b9ffccc1",
"signature_version": "v1"
},
{
"source": "https://github.com/huolinjue/klibc/commit/a31ae8c508fc8d1bca4f57e9f9f88127572d5202",
"target": {
"function": "malloc",
"file": "usr/klibc/malloc.c"
},
"digest": {
"function_hash": "174256505860084667354504871651983070251",
"length": 1034.0
},
"deprecated": false,
"signature_type": "Function",
"id": "CVE-2021-31873-d7e0cb41",
"signature_version": "v1"
}
]