A vulnerability was found in zstd v1.4.10, where an attacker can supply empty string as an argument to the command line tool to cause buffer overrun.
References
Configurations
History
07 Nov 2023, 03:59
Type | Values Removed | Values Added |
---|---|---|
References |
|
|
16 Sep 2023, 04:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
25 Jul 2023, 15:15
Type | Values Removed | Values Added |
---|---|---|
References |
|
Information
Published : 2023-03-31 20:15
Updated : 2024-02-28 20:13
NVD link : CVE-2022-4899
Mitre link : CVE-2022-4899
CVE.ORG link : CVE-2022-4899
JSON object : View
Products Affected
- zstandard
CWE
CWE-400
Uncontrolled Resource Consumption