Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-10685

Опубликовано: 02 мая 2018
Источник: nvd
CVSS3: 9.8
CVSS2: 7.5
EPSS Низкий

Описание

In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in the lzma_decompress_buf function of stream.c, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:long_range_zip_project:long_range_zip:0.631:*:*:*:*:*:*:*

EPSS

Процентиль: 68%
0.00559
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-416

Связанные уязвимости

CVSS3: 9.8
ubuntu
почти 8 лет назад

In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in the lzma_decompress_buf function of stream.c, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.

CVSS3: 9.8
debian
почти 8 лет назад

In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in the ...

CVSS3: 9.8
github
больше 3 лет назад

In Long Range Zip (aka lrzip) 0.631, there is a use-after-free in the lzma_decompress_buf function of stream.c, which allows remote attackers to cause a denial of service (application crash) or possibly have unspecified other impact.

EPSS

Процентиль: 68%
0.00559
Низкий

9.8 Critical

CVSS3

7.5 High

CVSS2

Дефекты

CWE-416