Junglewise Threat Intelligence

CVE-2021-45943: PYSEC-2022-43065 - GDAL 3.3.0 through 3.4.0 has a heap-based buffer overflow in PCIDSK::CPCIDSKFile::ReadFromFile (called from PCIDSK::CPCIDSKSegment::ReadFrom

CVE-2021-45943 · Severity: low · CVSS 3.1 · Published 2022-01-01

Technologies: GDAL (PyPI). Vendors: PyPI.

Executive brief

GDAL 3.3.0 through 3.4.0 has a heap-based buffer overflow in PCIDSK::CPCIDSKFile::ReadFromFile (called from PCIDSK::CPCIDSKSegment::ReadFromFile and PCIDSK::CPCIDSKBinarySegment::CPCIDSKBinarySegment).

Affected products

  • PyPI GDAL

Related threats