CVE-2018-11723
19.06.2018, 21:29
The libpff_name_to_id_map_entry_read function in libpff_name_to_id_map.c in libyal libpff through 2018-04-28 allows remote attackers to cause an information disclosure (heap-based buffer over-read) via a crafted pff file. NOTE: the vendor has disputed this as described in libyal/libpff issue 66 on GitHubEnginsight
Vendor | Product | Version |
---|---|---|
libpff_project | libpff | 𝑥 ≤ 20180428 |
𝑥
= Vulnerable software versions

Debian Releases

Ubuntu Releases
Common Weakness Enumeration