Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2018-10685

Опубликовано: 02 мая 2018
Источник: debian
EPSS Низкий

Описание

In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in the lzma_decompress_buf function of stream.c, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
lrzipfixed0.631+git180517-1package
lrzipno-dsajessiepackage
lrzipignoredwheezypackage

Примечания

  • https://github.com/ckolivas/lrzip/issues/95

EPSS

Процентиль: 68%
0.00559
Низкий

Связанные уязвимости

CVSS3: 9.8
ubuntu
почти 8 лет назад

In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in the lzma_decompress_buf function of stream.c, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.

CVSS3: 9.8
nvd
почти 8 лет назад

In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in the lzma_decompress_buf function of stream.c, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.

CVSS3: 9.8
github
больше 3 лет назад

In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in the lzma_decompress_buf function of stream.c, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.

EPSS

Процентиль: 68%
0.00559
Низкий