CVE-2021-32559
An integer overflow exists in pywin32 prior to version b301 when adding an access control entry (ACE) to an access control list (ACL) that would cause the size to be greater than 65535 bytes. An attacker who successfully exploited this vulnerability could crash the vulnerable process.
Published:Jul 6, 2021
Last Modified:Mar 27, 2025
EPS:Jul 6, 2021
EPSS Score:0.00191
CVSS Score:6.5
Affected Products
Vendor
Product
Action
Vendor
Mhammond
Product
Pywin32
Mhammond
Pywin32
Exploits
No exploit reference
Common Weakness Enumeration
Common Attack Pattern Enumeration and Classification (CAPEC)
References
Common Vulnerability Scoring System
Attack Vector
Network
Adjacent
Local
Physical
Privileges Required
None
Low
High
User Interaction
None
Required
Scope
Unchanged
Changed
Confidentiality
None
Low
High
Integrity
None
Low
High
Availability
None
Low
High
