Описание
In mspack/cab.h in libmspack before 0.8alpha and cabextract before 1.8, the CAB block input buffer is one byte too small for the maximal Quantum block, leading to an out-of-bounds write.
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | not-affected | uses system libmspack |
| cosmic | not-affected | uses system libmspack |
| devel | not-affected | uses system libmspack |
| disco | not-affected | uses system libmspack |
| eoan | not-affected | uses system libmspack |
| esm-apps/bionic | not-affected | uses system libmspack |
| esm-apps/focal | not-affected | uses system libmspack |
| esm-apps/jammy | not-affected | uses system libmspack |
| esm-apps/xenial | not-affected | uses system libmspack |
| esm-infra-legacy/trusty | released | 1.4-4ubuntu0.1~esm1 |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | not-affected | uses system libmspack |
| cosmic | not-affected | uses system libmspack |
| devel | not-affected | uses system libmspack |
| disco | not-affected | uses system libmspack |
| eoan | not-affected | uses system libmspack |
| esm-infra-legacy/trusty | released | 0.100.2+dfsg-1ubuntu0.14.04.2 |
| esm-infra/bionic | not-affected | uses system libmspack |
| esm-infra/focal | not-affected | uses system libmspack |
| esm-infra/xenial | not-affected | uses system libmspack |
| focal | not-affected | uses system libmspack |
Показывать по
| Релиз | Статус | Примечание |
|---|---|---|
| bionic | released | 0.6-3ubuntu0.2 |
| cosmic | released | 0.7-1ubuntu0.1 |
| devel | not-affected | 0.9.1-1 |
| disco | not-affected | 0.9.1-1 |
| eoan | not-affected | 0.9.1-1 |
| esm-infra-legacy/trusty | released | 0.4-1ubuntu0.1~esm1 |
| esm-infra/bionic | released | 0.6-3ubuntu0.2 |
| esm-infra/focal | not-affected | 0.9.1-1 |
| esm-infra/xenial | released | 0.5-1ubuntu0.16.04.3 |
| focal | not-affected | 0.9.1-1 |
Показывать по
EPSS
4.3 Medium
CVSS2
6.5 Medium
CVSS3
Связанные уязвимости
In mspack/cab.h in libmspack before 0.8alpha and cabextract before 1.8, the CAB block input buffer is one byte too small for the maximal Quantum block, leading to an out-of-bounds write.
In mspack/cab.h in libmspack before 0.8alpha and cabextract before 1.8, the CAB block input buffer is one byte too small for the maximal Quantum block, leading to an out-of-bounds write.
In mspack/cab.h in libmspack before 0.8alpha and cabextract before 1.8 ...
In mspack/cab.h in libmspack before 0.8alpha and cabextract before 1.8, the CAB block input buffer is one byte too small for the maximal Quantum block, leading to an out-of-bounds write.
Уязвимость библиотеки Libmspack и утилиты разархивации CAB-файлов СabExtract, позволяющая нарушителю выполнить произвольный код или вызвать отказ в обслуживании
EPSS
4.3 Medium
CVSS2
6.5 Medium
CVSS3