Lucene search

K
cvelistRedhatCVELIST:CVE-2020-27801
HistoryAug 25, 2022 - 7:38 p.m.

CVE-2020-27801

2022-08-2519:38:10
CWE-119
redhat
www.cve.org
1
buffer over-read
get_le64 function
upx 4.0.0
mach-o file

0.001 Low

EPSS

Percentile

34.8%

A heap-based buffer over-read was discovered in the get_le64 function in bele.h in UPX 4.0.0 via a crafted Mach-O file.

CNA Affected

[
  {
    "product": "upx",
    "vendor": "n/a",
    "versions": [
      {
        "status": "affected",
        "version": "upx 4.0.0-git-87b73e5cfdc1+"
      }
    ]
  }
]

0.001 Low

EPSS

Percentile

34.8%