CVE Tools

Yottadb

17 CVEs tracked since 2022. Since Apr 2022, none of them reached CISA KEV.

Yottadb CVEs per month

Apr 2022 to Apr 2022. Point at a month, or focus the strip and use the arrow keys.
Yottadb CVEs per month, with the share now in CISA KEV
MonthCVEsIn CISA KEV
2022-04170

Products

The products that kept showing up in Yottadb's monthly top three, with their CVEs summed over those months.

  1. Yottadb151 month
  2. Gt.m21 month

Latest CVEs

The 15 most recently published vulnerabilities affecting Yottadb.

  1. CVE-2021-44506An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). A lack of input validation in calls to do_verify in sr_unix/do_verify.c allows attackers to attempt to jump ...7.5
  2. CVE-2021-44505An issue was discovered in FIS GT.M through V7.0-000 (related to the YottaDB code base). Using crafted input, an attacker can cause a NULL pointer dereference after calls to ZPrint.7.5
  3. CVE-2021-44495An issue was discovered in YottaDB through r1.32 and V7.0-000 and FIS GT.M through V7.0-000. Using crafted input, an attacker can cause a NULL pointer dereference after calls to ZPrint.7.5
  4. CVE-2021-44494An issue was discovered in YottaDB through r1.32 and V7.0-000 and FIS GT.M through V7.0-000. Using crafted input, an attacker can cause calls to ZRead to crash due to a NULL pointer dereference.7.5
  5. CVE-2021-44493An issue was discovered in YottaDB through r1.32 and V7.0-000 and FIS GT.M through V7.0-000. Using crafted input, an attacker can cause a call to $Extract to force an signed integer holding the siz...7.5
  6. CVE-2021-44492An issue was discovered in YottaDB through r1.32 and V7.0-000 and FIS GT.M through V7.0-000. Using crafted input, attackers can cause a type to be incorrectly initialized in the function f_incr in ...7.5
  7. CVE-2021-44491An issue was discovered in YottaDB through r1.32 and V7.0-000. Using crafted input, attackers can cause a calculation of the size of calls to memset in op_fnj3 in sr_port/op_fnj3.c to result in an ...7.5
  8. CVE-2021-44490An issue was discovered in YottaDB through r1.32 and V7.0-000. Using crafted input, attackers can cause a calculation of the size of calls to memset in op_fnj3 in sr_port/op_fnj3.c to result in an ...7.5
  9. CVE-2021-44489An issue was discovered in YottaDB through r1.32 and V7.0-000. Using crafted input, attackers can cause an integer underflow of the size of calls to memset in op_fnj3 in sr_port/op_fnj3.c in order ...7.5
  10. CVE-2021-44488An issue was discovered in YottaDB through r1.32 and V7.0-000. Using crafted input, attackers can control the size and input to calls to memcpy in op_fnfnumber in sr_port/op_fnfnumber.c in order to...9.1
  11. CVE-2021-44487An issue was discovered in YottaDB through r1.32 and V7.0-000. A lack of NULL checks in calls to ious_open in sr_unix/ious_open.c allows attackers to crash the application by dereferencing a NULL p...7.5
  12. CVE-2021-44486An issue was discovered in YottaDB through r1.32 and V7.0-000. Using crafted input, attackers can manipulate the value of a function pointer used in op_write in sr_port/op_write.c in order to gain ...9.8
  13. CVE-2021-44485An issue was discovered in YottaDB through r1.32 and V7.0-000. A lack of NULL checks in trip_gen in sr_port/emit_code.c allows attackers to crash the application by dereferencing a NULL pointer.7.5
  14. CVE-2021-44484An issue was discovered in YottaDB through r1.32 and V7.0-000. A lack of NULL checks in calls to emit_trip in sr_port/emit_code.c allows attackers to crash the application by dereferencing a NULL p...7.5
  15. CVE-2021-44483An issue was discovered in YottaDB through r1.32 and V7.0-000. A lack of input validation in calls to eb_div in sr_port/eb_muldiv.c allows attackers to crash the application by performing a divide ...7.5

The record

Peak rank
#40 in Apr 2022
Busiest month shown
Apr 2022, 17 CVEs
Months with a KEV entry
0 since Apr 2022
Monthly snapshots
1 since 2022
Yottadb's full record, month by month

We use analytics cookies to see which pages and articles actually help people. Decline and none of them run — the site works the same. What we store