Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Blktrace Project Subscribe
Filtered by product Blktrace
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2018-10689 1 Blktrace Project 1 Blktrace 2021-07-08 4.3 MEDIUM 5.5 MEDIUM
blktrace (aka Block IO Tracing) 1.2.0, as used with the Linux kernel and Android, has a buffer overflow in the dev_map_read function in btt/devmap.c because the device and devno arrays are too small, as demonstrated by an invalid free when using the btt program with a crafted file.