Squashfs Project Squashfs 3.4

CPE Details

Squashfs Project Squashfs 3.4
3.4
2019-10-21
14h58 +00:00
2019-10-21
14h58 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:squashfs_project:squashfs:3.4:*:*:*:*:*:*:*

Informations

Vendor

squashfs_project

Product

squashfs

Version

3.4

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2015-4646 2017-04-13 15h00 +00:00 (1) unsquash-1.c, (2) unsquash-2.c, (3) unsquash-3.c, and (4) unsquash-4.c in Squashfs and sasquatch allow remote attackers to cause a denial of service (application crash) via a crafted input.
7.5
Haute
CVE-2015-4645 2017-03-17 13h00 +00:00 Integer overflow in the read_fragment_table_4 function in unsquash-4.c in Squashfs and sasquatch allows remote attackers to cause a denial of service (application crash) via a crafted input, which triggers a stack-based buffer overflow.
5.5
Moyen
CVE-2012-4024 2012-07-19 17h00 +00:00 Stack-based buffer overflow in the get_component function in unsquashfs.c in unsquashfs in Squashfs 4.2 and earlier allows remote attackers to execute arbitrary code via a crafted list file (aka a crafted file for the -ef option). NOTE: probably in most cases, the list file is a trusted file constructed by the program's user; however, there are some realistic situations in which a list file would be obtained from an untrusted remote source.
6.8
CVE-2012-4025 2012-07-19 17h00 +00:00 Integer overflow in the queue_init function in unsquashfs.c in unsquashfs in Squashfs 4.2 and earlier allows remote attackers to execute arbitrary code via a crafted block_log field in the superblock of a .sqsh file, leading to a heap-based buffer overflow.
6.8