Products
7-Zip
- before 24.01
Source
cve@mitre.org
Tags
CVE-2023-52168 details
Published : July 3, 2024, 6:15 p.m.
Last Modified : July 3, 2024, 7:15 p.m.
Last Modified : July 3, 2024, 7:15 p.m.
Description
The NtfsHandler.cpp NTFS handler in 7-Zip before 24.01 (for 7zz) contains a heap-based buffer overflow that allows an attacker to overwrite two bytes at multiple offsets beyond the allocated buffer size: buffer+512*i-2, for i=9, i=10, i=11, etc.
CVSS Score
1 | 2 | 3 | 4 | 5 | 6 | 7 | 8 | 9 | 10 |
---|
Weakness
Weakness | Name | Description |
---|
References
URL | Source |
---|---|
http://www.openwall.com/lists/oss-security/2024/07/03/10 | cve@mitre.org |
https://sourceforge.net/p/sevenzip/bugs/2402/ | cve@mitre.org |
https://www.openwall.com/lists/oss-security/2024/07/03/10 | cve@mitre.org |
This website uses the NVD API, but is not approved or certified by it.