An issue was discovered in The Sleuth Kit (TSK) 4.6.6. There is an off-by-one overwrite due to an underflow on tools/hashtools/hfind.cpp while using a bogus hash table.
References
Link | Resource |
---|---|
https://github.com/sleuthkit/sleuthkit/issues/1575 | Exploit Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/5EY53OYU7UZLAJWNIVVNR3EX2RNCCFTB/ | Mailing List Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/AQR2QY3IAF2IG6HGBSKGL66VUDOTC3OA/ | Mailing List Third Party Advisory |
https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/FFQKIE5U3LS5U7POPGS7YHLUSW2URWGJ/ | Mailing List Third Party Advisory |
Information
Published : 2019-08-02 08:15
Updated : 2022-04-22 13:11
NVD link : CVE-2019-14532
Mitre link : CVE-2019-14532
JSON object : View
CWE
CWE-193
Off-by-one Error
Products Affected
sleuthkit
- the_sleuth_kit
fedoraproject
- fedora