FreeBSD VuXML: Documenting security issues in FreeBSD and the FreeBSD Ports Collection

halibut -- Segmentation fault, denial of service or possibly other unspecified impact via a crafted text document

Affected packages
halibut = 1.2

Details

VuXML ID 3152a474-9390-11ef-87ad-a8a15998b5cb
Discovery 2022-05-24
Entry 2024-10-26

cve@mitre.org reports:

CVE-2021-42612: A use after free in cleanup_index in index.c in Halibut 1.2 allows an attacker to cause a segmentation fault or possibly have other unspecified impact via a crafted text document.

CVE-2021-42613: A double free in cleanup_index in index.c in Halibut 1.2 allows an attacker to cause a denial of service or possibly have other unspecified impact via a crafted text document.

CVE-2021-42614: A use after free in info_width_internal in bk_info.c in Halibut 1.2 allows an attacker to cause a segmentation fault or possibly have unspecified other impact via a crafted text document.

References

CVE Name CVE-2021-42612
CVE Name CVE-2021-42613
CVE Name CVE-2021-42614
URL https://nvd.nist.gov/vuln/detail/CVE-2021-42612
URL https://nvd.nist.gov/vuln/detail/CVE-2021-42613
URL https://nvd.nist.gov/vuln/detail/CVE-2021-42614