PT-2020-22432 · Yann Collet · Lz4

Published

2020-07-01

·

Updated

2020-07-01

None

No severity ratings or metrics are available. When they are, we'll update the corresponding info on the page.
Name of the Vulnerable Software and Affected Versions LZ4 (affected versions not specified)
Description The issue is related to a heap buffer overflow, specifically a WRITE 4 crash type. Technical details about the crash state indicate involvement of the LZ4 write32, LZ4 compress fast extState, and LZ4 compress fast functions.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.
Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

OSV-2020-624

Affected Products

Lz4