Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2022-4899

Опубликовано: 17 июл. 2022
Источник: redhat
CVSS3: 7.5
EPSS Низкий

Описание

A vulnerability was found in zstd v1.4.10, where an attacker can supply empty string as an argument to the command line tool to cause buffer overrun.

A vulnerability was found in zstd. This flaw allows an attacker to supply an empty string as an argument to the command line tool to cause a buffer overrun.

Отчет

The vulnerability in the zstd command-line utility is rated as Moderate Severity because it involves an Incorrect Calculation of Buffer Size (CWE-400) within the mallocAndJoin2Dir function in programs/util.c. A remote attacker can exploit this flaw by providing an input, specifically an empty string, which causes a function boundary error and results in a heap-based Out-of-Bounds Read on memory. This ultimately leads to a program crash, causing a Denial of Service condition that is limited to the specific zstd process or service instance, rather than affecting the entire host system's stability.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 6mysqlNot affected
Red Hat Enterprise Linux 8zstdWill not fix
Red Hat Enterprise Linux 9zstdNot affected
Red Hat AMQ Streams 2.7.0FixedRHSA-2024:352730.05.2024
Red Hat Enterprise Linux 8mysqlFixedRHSA-2024:089420.02.2024
Red Hat Enterprise Linux 9mysqlFixedRHSA-2024:114105.03.2024
Red Hat Software Collections for Red Hat Enterprise Linux 7rh-mysql80-mysqlFixedRHSA-2024:261930.04.2024

Показывать по

Дополнительная информация

Статус:

Moderate
Дефект:
CWE-400
https://bugzilla.redhat.com/show_bug.cgi?id=2179864zstd: mysql: buffer overrun in util.c

EPSS

Процентиль: 73%
0.01588
Низкий

7.5 High

CVSS3

Связанные уязвимости

CVSS3: 7.5
ubuntu
больше 3 лет назад

A vulnerability was found in zstd v1.4.10, where an attacker can supply empty string as an argument to the command line tool to cause buffer overrun.

CVSS3: 7.5
nvd
больше 3 лет назад

A vulnerability was found in zstd v1.4.10, where an attacker can supply empty string as an argument to the command line tool to cause buffer overrun.

CVSS3: 7.5
msrc
5 месяцев назад

A vulnerability was found in zstd v1.4.10 where an attacker can supply empty string as an argument to the command line tool to cause buffer overrun.

CVSS3: 7.5
debian
больше 3 лет назад

A vulnerability was found in zstd v1.4.10, where an attacker can suppl ...

suse-cvrf
больше 3 лет назад

Security update for zstd

EPSS

Процентиль: 73%
0.01588
Низкий

7.5 High

CVSS3