Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2018-16985

Опубликовано: 13 сент. 2018
Источник: nvd
CVSS3: 7.5
CVSS2: 5
EPSS Низкий

Описание

In Lizard (formerly LZ5) 2.0, use of an invalid memory address was discovered in LZ5_compress_continue in lz5_compress.c, related to LZ5_compress_fastSmall and MEM_read32. The vulnerability causes a segmentation fault and application crash, which leads to denial of service.

Ссылки

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:lizard_project:lizard:2.0:*:*:*:*:*:*:*

EPSS

Процентиль: 67%
0.00536
Низкий

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-125

Связанные уязвимости

CVSS3: 7.5
github
больше 3 лет назад

In Lizard (formerly LZ5) 2.0, use of an invalid memory address was discovered in LZ5_compress_continue in lz5_compress.c, related to LZ5_compress_fastSmall and MEM_read32. The vulnerability causes a segmentation fault and application crash, which leads to denial of service.

EPSS

Процентиль: 67%
0.00536
Низкий

7.5 High

CVSS3

5 Medium

CVSS2

Дефекты

CWE-125