Vulnerability Monitor

The vendors, products, and vulnerabilities you care about

CVE-2022-3821


An off-by-one Error issue was discovered in Systemd in format_timespan() function of time-util.c. An attacker could supply specific values for time and accuracy that leads to buffer overrun in format_timespan(), leading to a Denial of Service.


Published

2022-11-08T22:15:16.700

Last Modified

2025-05-02T18:15:24.840

Status

Modified

Source

[email protected]

Severity

CVSSv3.1: 5.5 (MEDIUM)

Weaknesses
  • Type: Primary
    CWE-193

Affected Vendors & Products
Type Vendor Product Version/Range Vulnerable?
Application systemd_project systemd ≤ 251 Yes
Operating System redhat enterprise_linux 8.0 Yes
Operating System redhat enterprise_linux 9.0 Yes
Operating System fedoraproject fedora 35 Yes

References