Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2023-29416

Опубликовано: 06 апр. 2023
Источник: debian
EPSS Низкий

Описание

An issue was discovered in libbzip3.a in bzip3 before 1.3.0. A bz3_decode_block out-of-bounds write can occur with a crafted archive because bzip3 does not follow the required procedure for interacting with libsais.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
bzip3fixed1.2.2-2package

Примечания

  • https://github.com/kspalaiologos/bzip3/commit/bfa5bf82b53715dfedf048e5859a46cf248668ff (1.3.0)

  • https://github.com/kspalaiologos/bzip3/issues/92

EPSS

Процентиль: 32%
0.00125
Низкий

Связанные уязвимости

CVSS3: 6.5
ubuntu
почти 3 года назад

An issue was discovered in libbzip3.a in bzip3 before 1.3.0. A bz3_decode_block out-of-bounds write can occur with a crafted archive because bzip3 does not follow the required procedure for interacting with libsais.

CVSS3: 6.5
nvd
почти 3 года назад

An issue was discovered in libbzip3.a in bzip3 before 1.3.0. A bz3_decode_block out-of-bounds write can occur with a crafted archive because bzip3 does not follow the required procedure for interacting with libsais.

CVSS3: 6.5
github
почти 3 года назад

An issue was discovered in libbzip3.a in bzip3 before 1.3.0. A bz3_decode_block out-of-bounds write can occur with a crafted archive because bzip3 does not follow the required procedure for interacting with libsais.

EPSS

Процентиль: 32%
0.00125
Низкий