Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:37823
HistoryNov 07, 2022 - 5:58 p.m.

Denial Of Service (DoS)

2022-11-0717:58:33
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
8
upx
denial of service
vulnerability
get_le64
heap-based buffer
mach-o
software

0.001 Low

EPSS

Percentile

34.8%

upx is vulnerable to denial of service. The vulnerability exists due to the heap-based buffer over-read in the get_le64 function of bele.h, allowing an attacker to crash the application through the maliciously crafted Mach-O file.

0.001 Low

EPSS

Percentile

34.8%