Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:37783
HistoryNov 03, 2022 - 4:42 a.m.

Denial Of Service (DoS)

2022-11-0304:42:15
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6
vulnerability
denial of service
null pointer
packlinuxelf
p_lx_elf.cpp
arbitrary code
crafted file
software

0.002 Low

EPSS

Percentile

58.4%

upx is vulnerable to denial of service. The vulnerability exists due to a null pointer dereference in upx PackLinuxElf::canUnpack() in p_lx_elf.cpp which allows attackers to execute arbitrary code and cause a denial of service via a crafted file.

0.002 Low

EPSS

Percentile

58.4%