PT-2017-6776 · Squashfs+3 · Squashfs+3

Ghost

·

Publicado

2015-09-08

·

Atualizado

2024-07-12

·

CVE-2015-4645

CVSS v3.1

5.5

Média

VetorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Squashfs (affected versions not specified) sasquatch (affected versions not specified)
Description The issue is related to an integer overflow in the read fragment table 4 function, which can be triggered by a crafted input. This leads to a stack-based buffer overflow, causing a denial of service in the form of an application crash.
Recommendations For Squashfs, at the moment, there is no information about a newer version that contains a fix for this issue. For sasquatch, at the moment, there is no information about a newer version that contains a fix for this issue.

Correção

DoS

Integer Overflow

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Enumeração de Fraquezas

Identificadores relacionados

ALT-PU-2019-3084
ALT-PU-2019-3105
AZL-6884
CVE-2015-4645
MGASA-2015-0335
OPENSUSE-SU-2023_4591-1
OPENSUSE-SU-2024:11402-1
SUSE-SU-2023:4424-1
SUSE-SU-2023:4591-1
SUSE-SU-2023_4424-1
SUSE-SU-2023_4591-1
SUSE-SU-2024:2463-1

Produtos afetados

Alt Linux
Squashfs
Suse
Sasquatch