CVE-2021-3410

medium
Published — · Modified —
CVSS v3
CVSS v2
VIR risk
5.5

Description

A flaw was found in libcaca v0.99.beta19. A buffer overflow issue in caca_resize function in libcaca/caca/canvas.c may lead to local execution of arbitrary code in the user context.

Predictions

Exploit likelihood
20%
Patch ETA

Heuristic predictions, AS-IS, for prioritization only.

Mitigations

vendor Authored 2026-05-27

Vendor advisory: debian — https://security-tracker.debian.org/tracker/CVE-2021-3410

vendor Authored 2026-05-27

Vendor advisory: suse — https://www.suse.com/security/cve/CVE-2021-3410.html

OS impact

OSVersionStatusFixed in
arch archfixed0.99.beta19-4
suse slesaffected
debian debianbookwormfixed0.99.beta19-2.2
debian debianbullseyefixed0.99.beta19-2.2
debian debianforkyfixed0.99.beta19-2.2
debian debiansidfixed0.99.beta19-2.2
debian debiantrixiefixed0.99.beta19-2.2

References

Verify integrity in audit chain (admin only). AS-IS.