Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:6977
HistoryJul 06, 2018 - 7:31 a.m.

Buffer Underflow

2018-07-0607:31:35
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
6

0.006 Low

EPSS

Percentile

77.8%

mercurial is vulnerable to buffer underflows. The application does not validate the pointer position when reading a patch fragment, allowing a malicious user to cause a buffer underflow by passing a patch file to the application, causing the application to crash or arbitrary code to be executed.