VYPR
Critical severity9.8NVD Advisory· Published Nov 19, 2021· Updated Jun 17, 2026

CVE-2021-40391

CVE-2021-40391

Description

An out-of-bounds write vulnerability exists in the drill format T-code tool number functionality of Gerbv 2.7.0, dev (commit b5f1eacd), and the forked version of Gerbv (commit 71493260). A specially-crafted drill file can lead to code execution. An attacker can provide a malicious file to trigger this vulnerability.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

7
  • cpe:2.3:a:gerbv_project:gerbv:2.7.0:-:*:*:*:*:*:*+ 2 more
    • cpe:2.3:a:gerbv_project:gerbv:2.7.0:-:*:*:*:*:*:*
    • cpe:2.3:a:gerbv_project:gerbv:2.7.0:dev:*:*:*:*:*:*
    • cpe:2.3:a:gerbv_project:gerbv:2.7.0:forked_dev:*:*:*:*:*:*
  • cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*
  • cpe:2.3:o:fedoraproject:fedora:36:*:*:*:*:*:*:*
  • Gerbv/Gerbvcpe-rescue2 versions
    (expand)+ 1 more
    • (no CPE)
    • (no CPE)range: <=2.7.0

Patches

Vulnerability mechanics

References

3

News mentions

0

No linked articles in our index yet.