Integer overflow in the read_fragment_table_4 function in unsquash-4.c in Squashfs and sasquatch allows remote attackers to cause a denial of service (application crash) via a crafted input, which triggers a stack-based buffer overflow.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published: 2017-03-17T14:00:00

Updated: 2024-08-06T06:18:12.164Z

Reserved: 2015-06-18T00:00:00

Link: CVE-2015-4645

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2017-03-17T14:59:00.797

Modified: 2019-10-24T14:02:44.267

Link: CVE-2015-4645

cve-icon Redhat

Severity : Moderate

Publid Date: 2015-06-17T00:00:00Z

Links: CVE-2015-4645 - Bugzilla