CVE-2022-38495

HIGH7.8EPSS 0.05%

LIEF vulnerable to heap based buffer overflow via print_binary function

Published: 9/14/2022Modified: 11/8/2023
Also known as:GHSA-42vg-2q93-fj6jPYSEC-2022-276

Description

LIEF commit 365a16a was discovered to contain a heap-buffer overflow via the function `print_binary` at `/c/macho_reader.c`. Commit 0033b6312fd311b2e45e379c04a83d77c1e58578 contains a patch.

Affected packages (2)

CVSS scores

SourceVersionSeverityVector
osvCVSS 3.1HIGH7.8CVSS:3.1/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H

References (5)