Количество 13
Количество 13
CVE-2021-3520
There's a flaw in lz4. An attacker who submits a crafted file to an application linked with lz4 may be able to trigger an integer overflow, leading to calling of memmove() on a negative size argument, causing an out-of-bounds write and/or a crash. The greatest impact of this flaw is to availability, with some potential impact to confidentiality and integrity as well.
CVE-2021-3520
There's a flaw in lz4. An attacker who submits a crafted file to an application linked with lz4 may be able to trigger an integer overflow, leading to calling of memmove() on a negative size argument, causing an out-of-bounds write and/or a crash. The greatest impact of this flaw is to availability, with some potential impact to confidentiality and integrity as well.
CVE-2021-3520
There's a flaw in lz4. An attacker who submits a crafted file to an application linked with lz4 may be able to trigger an integer overflow, leading to calling of memmove() on a negative size argument, causing an out-of-bounds write and/or a crash. The greatest impact of this flaw is to availability, with some potential impact to confidentiality and integrity as well.
CVE-2021-3520
There's a flaw in lz4. An attacker who submits a crafted file to an ap ...
openSUSE-SU-2021:1825-1
Security update for lz4
openSUSE-SU-2021:0760-1
Security update for lz4
SUSE-SU-2021:1825-1
Security update for lz4
SUSE-SU-2021:1647-1
Security update for lz4
RLSA-2021:2575
Moderate: lz4 security update
GHSA-gmc7-pqv9-966m
There's a flaw in lz4. An attacker who submits a crafted file to an application linked with lz4 may be able to trigger an integer overflow, leading to calling of memmove() on a negative size argument, causing an out-of-bounds write and/or a crash. The greatest impact of this flaw is to availability, with some potential impact to confidentiality and integrity as well.
ELSA-2021-2575
ELSA-2021-2575: lz4 security update (MODERATE)
BDU:2021-05259
Уязвимость функции memmove() алгоритма сжатия данных без потерь LZ4, связанная с выходом операции за допустимые границы буфера данных, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании
SUSE-SU-2021:1613-1
Security update for lz4
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2021-3520 There's a flaw in lz4. An attacker who submits a crafted file to an application linked with lz4 may be able to trigger an integer overflow, leading to calling of memmove() on a negative size argument, causing an out-of-bounds write and/or a crash. The greatest impact of this flaw is to availability, with some potential impact to confidentiality and integrity as well. | CVSS3: 9.8 | 0% Низкий | больше 4 лет назад | |
CVE-2021-3520 There's a flaw in lz4. An attacker who submits a crafted file to an application linked with lz4 may be able to trigger an integer overflow, leading to calling of memmove() on a negative size argument, causing an out-of-bounds write and/or a crash. The greatest impact of this flaw is to availability, with some potential impact to confidentiality and integrity as well. | CVSS3: 8.6 | 0% Низкий | больше 4 лет назад | |
CVE-2021-3520 There's a flaw in lz4. An attacker who submits a crafted file to an application linked with lz4 may be able to trigger an integer overflow, leading to calling of memmove() on a negative size argument, causing an out-of-bounds write and/or a crash. The greatest impact of this flaw is to availability, with some potential impact to confidentiality and integrity as well. | CVSS3: 9.8 | 0% Низкий | больше 4 лет назад | |
CVE-2021-3520 There's a flaw in lz4. An attacker who submits a crafted file to an ap ... | CVSS3: 9.8 | 0% Низкий | больше 4 лет назад | |
openSUSE-SU-2021:1825-1 Security update for lz4 | 0% Низкий | больше 4 лет назад | ||
openSUSE-SU-2021:0760-1 Security update for lz4 | 0% Низкий | больше 4 лет назад | ||
SUSE-SU-2021:1825-1 Security update for lz4 | 0% Низкий | больше 4 лет назад | ||
SUSE-SU-2021:1647-1 Security update for lz4 | 0% Низкий | больше 4 лет назад | ||
RLSA-2021:2575 Moderate: lz4 security update | 0% Низкий | больше 4 лет назад | ||
GHSA-gmc7-pqv9-966m There's a flaw in lz4. An attacker who submits a crafted file to an application linked with lz4 may be able to trigger an integer overflow, leading to calling of memmove() on a negative size argument, causing an out-of-bounds write and/or a crash. The greatest impact of this flaw is to availability, with some potential impact to confidentiality and integrity as well. | CVSS3: 9.8 | 0% Низкий | больше 3 лет назад | |
ELSA-2021-2575 ELSA-2021-2575: lz4 security update (MODERATE) | больше 4 лет назад | |||
BDU:2021-05259 Уязвимость функции memmove() алгоритма сжатия данных без потерь LZ4, связанная с выходом операции за допустимые границы буфера данных, позволяющая нарушителю получить доступ к конфиденциальным данным, нарушить их целостность, а также вызвать отказ в обслуживании | CVSS3: 9.8 | 0% Низкий | почти 5 лет назад | |
SUSE-SU-2021:1613-1 Security update for lz4 | больше 4 лет назад |
Уязвимостей на страницу