CVE-2021-22545

An attacker can craft a specific IdaPro *.i64 file that will cause the BinDiff plugin to load an invalid memory offset. This can allow the attacker to control the instruction pointer and execute arbitrary code. It is recommended to upgrade BinDiff 7
References
Link Resource
https://www.zynamics.com/bindiff/manual/index.html#nyyyy7 Product Release Notes
Configurations

Configuration 1

cpe:2.3:a:google:bindiff:*:*:*:*:*:*:*:*

Information

Published : 2021-06-29 12:15

Updated : 2021-07-02 05:46


NVD link : CVE-2021-22545

Mitre link : CVE-2021-22545

Products Affected
CWE