CVE-2021-36089

Published
View on NVD ↗
CVSS v3
7.8
HIGH
CVSS v2
6.8
MEDIUM
Affected
1
PROJECT

Description

Grok 7.6.6 through 9.2.0 has a heap-based buffer overflow in grk::FileFormatDecompress::apply_palette_clr (called from grk::FileFormatDecompress::applyColour).

OSS-Fuzz vulnerabilities for OSV.
GitHubGitHub
180