Lucene search

K
osvGoogleOSV:GHSA-F8M3-JPXR-HM5X
HistoryMay 24, 2022 - 5:24 p.m.

bsdiff4 out-of-bounds write via patch file

2022-05-2417:24:16
Google
osv.dev
6
bsdiff4
buffer overflow
patch file
heap memory
software

AI Score

7.5

Confidence

High

EPSS

0.001

Percentile

36.8%

A buffer overflow in the patching routine of bsdiff4 before 1.2.0 allows an attacker to write to heap memory (beyond allocated bounds) via a crafted patch file.

AI Score

7.5

Confidence

High

EPSS

0.001

Percentile

36.8%

Related for OSV:GHSA-F8M3-JPXR-HM5X