PT-2022-24356 · Lief · Lief

Ccwang19

·

Published

2022-09-13

·

Updated

2022-09-21

·

CVE-2022-38306

CVSS v3.1

7.8

High

VectorAV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions LIEF versions prior to 53bf680ef494a835e2c4a5de328ca85416a03a5a
Description A heap-buffer overflow was discovered in the component /core/CorePrPsInfo.tcc. The issue affects LIEF and is related to a heap-buffer overflow, which can be exploited.
Recommendations For versions prior to 53bf680ef494a835e2c4a5de328ca85416a03a5a, update to a version that includes the patch commit 53bf680ef494a835e2c4a5de328ca85416a03a5a to resolve the issue.

Exploit

Fix

Memory Corruption

Weakness Enumeration

Related Identifiers

CVE-2022-38306
GHSA-52XX-R3G2-P8JM
PYSEC-2022-274

Affected Products

Lief