Several missing input validations in the 3MF parser component of Slic3r libslic3r 1.3.0 can each allow an attacker to cause an application crash using a crafted 3MF input file.
References
Link | Resource |
---|---|
https://github.com/slic3r/Slic3r/issues/5118 | Issue Tracking Mitigation Patch Third Party Advisory |
https://github.com/slic3r/Slic3r/issues/5119 | Issue Tracking Mitigation Patch Third Party Advisory |
https://github.com/slic3r/Slic3r/issues/5120 | Issue Tracking Mitigation Patch Third Party Advisory |
https://github.com/slic3r/Slic3r/issues/5118 | Issue Tracking Mitigation Patch Third Party Advisory |
https://github.com/slic3r/Slic3r/issues/5119 | Issue Tracking Mitigation Patch Third Party Advisory |
https://github.com/slic3r/Slic3r/issues/5120 | Issue Tracking Mitigation Patch Third Party Advisory |
Configurations
History
21 Nov 2024, 06:33
Type | Values Removed | Values Added |
---|---|---|
References | () https://github.com/slic3r/Slic3r/issues/5118 - Issue Tracking, Mitigation, Patch, Third Party Advisory | |
References | () https://github.com/slic3r/Slic3r/issues/5119 - Issue Tracking, Mitigation, Patch, Third Party Advisory | |
References | () https://github.com/slic3r/Slic3r/issues/5120 - Issue Tracking, Mitigation, Patch, Third Party Advisory |
Information
Published : 2022-01-25 14:15
Updated : 2024-11-21 06:33
NVD link : CVE-2021-45847
Mitre link : CVE-2021-45847
CVE.ORG link : CVE-2021-45847
JSON object : View
Products Affected
slic3r
- slic3r
CWE
CWE-476
NULL Pointer Dereference