Описание
mspack/lzxd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2, allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted CHM file.
| Релиз | Статус | Примечание |
|---|---|---|
| artful | not-affected | uses system libmspack |
| bionic | not-affected | uses system libmspack |
| cosmic | not-affected | uses system libmspack |
| devel | not-affected | uses system libmspack |
| disco | not-affected | uses system libmspack |
| esm-infra-legacy/trusty | released | 0.99.2+addedllvm-0ubuntu0.14.04.2 |
| esm-infra/bionic | not-affected | uses system libmspack |
| esm-infra/focal | not-affected | uses system libmspack |
| esm-infra/xenial | not-affected | uses system libmspack |
| focal | not-affected | uses system libmspack |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| artful | not-affected | 0.6-3 |
| bionic | not-affected | 0.6-3 |
| cosmic | not-affected | 0.6-3 |
| devel | not-affected | 0.6-3 |
| disco | not-affected | 0.6-3 |
| esm-infra-legacy/trusty | released | 0.4-1ubuntu0.1~esm2 |
| esm-infra/bionic | not-affected | 0.6-3 |
| esm-infra/focal | not-affected | 0.6-3 |
| esm-infra/xenial | released | 0.5-1ubuntu0.16.04.1 |
| focal | not-affected | 0.6-3 |
Показывать по
Ссылки на источники
EPSS
6.8 Medium
CVSS2
7.8 High
CVSS3
Связанные уязвимости
mspack/lzxd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2, allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted CHM file.
mspack/lzxd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2, allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted CHM file.
mspack/lzxd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2, allows ...
mspack/lzxd.c in libmspack 0.5alpha, as used in ClamAV 0.99.2, allows remote attackers to cause a denial of service (heap-based buffer overflow and application crash) or possibly have unspecified other impact via a crafted CHM file.
EPSS
6.8 Medium
CVSS2
7.8 High
CVSS3