[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

248149

 
 

909

 
 

194803

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

sleuthkit: Multiple vulnerabilities (CVE-2020-10232, CVE-2020-10233)

ID: oval:org.secpod.oval:def:1801685Date: (C)2020-03-20   (M)2023-11-10
Class: PATCHFamily: unix




In version 4.8.0 and earlier of The Sleuth Kit , there is a stack buffer overflow vulnerability in the YAFFS file timestamp parsing logic in yaffsfs_istat in fs/yaffs.c.In version 4.8.0 and earlier of The Sleuth Kit , there is a heap-based buffer over-read in ntfs_dinode_lookup in fs/ntfs.c.

Platform:
Alpine Linux 3.11
Product:
sleuthkit
Reference:
11299
CVE-2020-10232
CVE-2020-10233
CVE    2
CVE-2020-10232
CVE-2020-10233

© SecPod Technologies