Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2015-4646

Опубликовано: 13 апр. 2017
Источник: debian
EPSS Низкий

Описание

(1) unsquash-1.c, (2) unsquash-2.c, (3) unsquash-3.c, and (4) unsquash-4.c in Squashfs and sasquatch allow remote attackers to cause a denial of service (application crash) via a crafted input.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
squashfs-toolsfixed1:4.3-2package
squashfs-toolsno-dsajessiepackage
squashfs-toolsno-dsawheezypackage
squashfs-toolsno-dsasqueezepackage

Примечания

  • https://github.com/plougher/squashfs-tools/commit/f95864afe8833fe3ad782d714b41378e860977b1

  • https://github.com/plougher/squashfs-tools/commit/ba215d73e153a6f237088b4ecb88c702bb4d4183

  • Further more complete fixes went into 1:4.3+git190815-1

EPSS

Процентиль: 74%
0.00872
Низкий

Связанные уязвимости

CVSS3: 7.5
ubuntu
около 8 лет назад

(1) unsquash-1.c, (2) unsquash-2.c, (3) unsquash-3.c, and (4) unsquash-4.c in Squashfs and sasquatch allow remote attackers to cause a denial of service (application crash) via a crafted input.

redhat
около 10 лет назад

(1) unsquash-1.c, (2) unsquash-2.c, (3) unsquash-3.c, and (4) unsquash-4.c in Squashfs and sasquatch allow remote attackers to cause a denial of service (application crash) via a crafted input.

CVSS3: 7.5
nvd
около 8 лет назад

(1) unsquash-1.c, (2) unsquash-2.c, (3) unsquash-3.c, and (4) unsquash-4.c in Squashfs and sasquatch allow remote attackers to cause a denial of service (application crash) via a crafted input.

CVSS3: 7.5
msrc
почти 4 года назад

Описание отсутствует

CVSS3: 7.5
github
около 3 лет назад

(1) unsquash-1.c, (2) unsquash-2.c, (3) unsquash-3.c, and (4) unsquash-4.c in Squashfs and sasquatch allow remote attackers to cause a denial of service (application crash) via a crafted input.

EPSS

Процентиль: 74%
0.00872
Низкий