File before 5.43 has an stack-based buffer over-read in file_copystr in funcs.c. NOTE: "File" is the name of an Open Source project.
The product reads data past the end, or before the beginning, of the intended buffer.
Link | Tags |
---|---|
https://bugs.astron.com/view.php?id=310 | vendor advisory exploit |
https://www.debian.org/security/2023/dsa-5489 | third party advisory vendor advisory |
https://security.netapp.com/advisory/ntap-20231116-0002/ | third party advisory |
https://support.apple.com/kb/HT214081 | |
https://support.apple.com/kb/HT214088 | |
https://support.apple.com/kb/HT214084 | |
https://support.apple.com/kb/HT214086 | |
http://seclists.org/fulldisclosure/2024/Mar/21 | mailing list |
http://seclists.org/fulldisclosure/2024/Mar/25 | mailing list |
http://seclists.org/fulldisclosure/2024/Mar/24 | mailing list |