Bug 2183009 (CVE-2021-33642) - CVE-2021-33642 byacc: an infinite loop occurs in next_inline() of the more_curly() function
Summary: CVE-2021-33642 byacc: an infinite loop occurs in next_inline() of the more_cu...
Keywords:
Status: NEW
Alias: CVE-2021-33642
Product: Security Response
Classification: Other
Component: vulnerability
Version: unspecified
Hardware: All
OS: Linux
low
low
Target Milestone: ---
Assignee: Nobody
QA Contact:
URL:
Whiteboard:
Depends On: 2183010 2183014 2183015 2183016
Blocks: 2164081
TreeView+ depends on / blocked
 
Reported: 2023-03-30 08:10 UTC by Marian Rehak
Modified: 2023-09-26 05:41 UTC (History)
2 users (show)

Fixed In Version:
Clone Of:
Environment:
Last Closed:
Embargoed:


Attachments (Terms of Use)

Description Marian Rehak 2023-03-30 08:10:57 UTC
When a file is processed, an infinite loop occurs in next_inline() of the more_curly() function.

Reference:

https://gitee.com/src-openeuler/byacc/commit/50225f48c6b53e9d7c936681a06682404cb8ec4d

Comment 1 Marian Rehak 2023-03-30 08:11:12 UTC
Created byacc tracking bugs for this issue:

Affects: fedora-all [bug 2183010]

Comment 3 Siddhesh Poyarekar 2023-03-31 12:35:40 UTC
See also CVE-2021-33641, byacc is a standalone program so I can't see why this is being treated as a security bug.


Note You need to log in before you can comment on or make changes to this bug.