CVE-2018-18585
23.10.2018, 02:29
chmd_read_headers in mspack/chmd.c in libmspack before 0.8alpha accepts a filename that has '\0' as its first or second character (such as the "/\0" name).Enginsight
| Vendor | Product | Version |
|---|---|---|
| kyzer | libmspack | 0.3:alpha |
| kyzer | libmspack | 0.4:alpha |
| kyzer | libmspack | 0.5:alpha |
| kyzer | libmspack | 0.6:alpha |
| kyzer | libmspack | 0.7:alpha |
| debian | debian_linux | 8.0 |
| redhat | enterprise_linux_desktop | 7.0 |
| redhat | enterprise_linux_server | 7.0 |
| redhat | enterprise_linux_workstation | 7.0 |
| canonical | ubuntu_linux | 12.04 |
| canonical | ubuntu_linux | 14.04 |
| canonical | ubuntu_linux | 16.04 |
| canonical | ubuntu_linux | 18.04 |
| canonical | ubuntu_linux | 18.10 |
| starwindsoftware | starwind_virtual_san | - |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
Ubuntu Product | |||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| clamav |
| ||||||||||||||||||||||
| libmspack |
|
Common Weakness Enumeration
References