CVE-2022-4899
31.03.2023, 20:15
A vulnerability was found in zstd v1.4.10, where an attacker can supply empty string as an argument to the command line tool to cause buffer overrun.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| zstandard | 1.4.10 |
𝑥
= Vulnerable software versions
Debian Releases
Ubuntu Releases
openSUSE / SLES Releases
openSUSE Product | |||||||||||||||||||||||||
|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|---|
| libzstd-devel |
| ||||||||||||||||||||||||
| libzstd1 |
| ||||||||||||||||||||||||
| libzstd1-32bit |
| ||||||||||||||||||||||||
| zstd |
|
Red Hat Enterprise Linux Releases
References