Логотип exploitDog
bind:CVE-2021-42387
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2021-42387

Количество 4

Количество 4

ubuntu логотип

CVE-2021-42387

почти 4 года назад

Heap out-of-bounds read in Clickhouse's LZ4 compression codec when parsing a malicious query. As part of the LZ4::decompressImpl() loop, a 16-bit unsigned user-supplied value ('offset') is read from the compressed data. The offset is later used in the length of a copy operation, without checking the upper bounds of the source of the copy operation.

CVSS3: 8.1
EPSS: Низкий
nvd логотип

CVE-2021-42387

почти 4 года назад

Heap out-of-bounds read in Clickhouse's LZ4 compression codec when parsing a malicious query. As part of the LZ4::decompressImpl() loop, a 16-bit unsigned user-supplied value ('offset') is read from the compressed data. The offset is later used in the length of a copy operation, without checking the upper bounds of the source of the copy operation.

CVSS3: 8.1
EPSS: Низкий
debian логотип

CVE-2021-42387

почти 4 года назад

Heap out-of-bounds read in Clickhouse's LZ4 compression codec when par ...

CVSS3: 8.1
EPSS: Низкий
github логотип

GHSA-cf9g-639p-3wvv

почти 4 года назад

Heap out-of-bounds read in Clickhouse's LZ4 compression codec when parsing a malicious query. As part of the LZ4::decompressImpl() loop, a 16-bit unsigned user-supplied value ('offset') is read from the compressed data. The offset is later used in the length of a copy operation, without checking the upper bounds of the source of the copy operation.

CVSS3: 8.1
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2021-42387

Heap out-of-bounds read in Clickhouse's LZ4 compression codec when parsing a malicious query. As part of the LZ4::decompressImpl() loop, a 16-bit unsigned user-supplied value ('offset') is read from the compressed data. The offset is later used in the length of a copy operation, without checking the upper bounds of the source of the copy operation.

CVSS3: 8.1
0%
Низкий
почти 4 года назад
nvd логотип
CVE-2021-42387

Heap out-of-bounds read in Clickhouse's LZ4 compression codec when parsing a malicious query. As part of the LZ4::decompressImpl() loop, a 16-bit unsigned user-supplied value ('offset') is read from the compressed data. The offset is later used in the length of a copy operation, without checking the upper bounds of the source of the copy operation.

CVSS3: 8.1
0%
Низкий
почти 4 года назад
debian логотип
CVE-2021-42387

Heap out-of-bounds read in Clickhouse's LZ4 compression codec when par ...

CVSS3: 8.1
0%
Низкий
почти 4 года назад
github логотип
GHSA-cf9g-639p-3wvv

Heap out-of-bounds read in Clickhouse's LZ4 compression codec when parsing a malicious query. As part of the LZ4::decompressImpl() loop, a 16-bit unsigned user-supplied value ('offset') is read from the compressed data. The offset is later used in the length of a copy operation, without checking the upper bounds of the source of the copy operation.

CVSS3: 8.1
0%
Низкий
почти 4 года назад

Уязвимостей на страницу