Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:25241
HistoryMay 10, 2020 - 11:21 p.m.

Arbitrary Code Execution

2020-05-1023:21:37
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
16

0.009 Low

EPSS

Percentile

82.7%

libmspack is vulnerable to arbitrary code execution. A stack-based buffer overflow in the function cabd_read_string function in mspack/cabd.c allows a remote attacker to execute arbitrary code on the system or cause an application crash via a malicious CAB file.