PT-2017-6776 · Squashfs+3 · Squashfs+3

Ghost

·

Published

2015-09-08

·

Updated

2024-07-12

·

CVE-2015-4645

CVSS v3.1

5.5

Medium

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:N/I:N/A:H
Name of the Vulnerable Software and Affected Versions Squashfs (affected versions not specified) sasquatch (affected versions not specified)
Description The issue is related to an integer overflow in the read fragment table 4 function, which can be triggered by a crafted input. This leads to a stack-based buffer overflow, causing a denial of service in the form of an application crash.
Recommendations For Squashfs, at the moment, there is no information about a newer version that contains a fix for this issue. For sasquatch, at the moment, there is no information about a newer version that contains a fix for this issue.

Fix

DoS

Integer Overflow

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2019-3084
ALT-PU-2019-3105
AZL-6884
CVE-2015-4645
MGASA-2015-0335
OPENSUSE-SU-2023_4591-1
OPENSUSE-SU-2024:11402-1
SUSE-SU-2023:4424-1
SUSE-SU-2023:4591-1
SUSE-SU-2023_4424-1
SUSE-SU-2023_4591-1
SUSE-SU-2024:2463-1

Affected Products

Alt Linux
Squashfs
Suse
Sasquatch