PT-2019-13739 · Tsk+2 · The Sleuth Kit+2

Nico Waisman

·

Published

2019-08-02

·

Updated

2019-09-08

·

CVE-2019-14531

CVSS v3.1

9.8

Critical

VectorAV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions The Sleuth Kit (TSK) version 4.6.6
Description An issue was discovered in the parsing of System Use Sharing Protocol data in the iso9660 module, specifically in fs/iso9660.c, which leads to an out of bounds read.
Recommendations For version 4.6.6, consider updating to a newer version that addresses this issue, however, at the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Out of bounds Read

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

ALT-PU-2019-2661
CVE-2019-14531

Affected Products

Alt Linux
Debian
The Sleuth Kit