** DISPUTED ** libyal liblnk 20191006 has a heap-based buffer over-read in the network_share_name_offset>20 code block of liblnk_location_information_read_data in liblnk_location_information.c, a different issue than CVE-2019-17264. NOTE: the vendor has disputed this as described in the GitHub issue.
References
Link | Resource |
---|---|
https://github.com/libyal/liblnk/issues/40 | Exploit Patch Third Party Advisory |
Configurations
Information
Published : 2019-10-09 12:15
Updated : 2019-10-11 08:06
NVD link : CVE-2019-17401
Mitre link : CVE-2019-17401
JSON object : View
CWE
CWE-125
Out-of-bounds Read
Products Affected
liblnk_project
- liblnk