Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Integer overflow in the queue_init function in unsquashfs.c in unsquashfs in Squashfs 4.2 and earlier allows remote attackers to execute arbitrary code via a crafted block_log field in the superblock of a .sqsh file, leading to a heap-based buffer overflow.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Squashfs ‘queue_init’函数整数溢出漏洞
Vulnerability Description
Squashfs 4.2版本和早期版本中的unsquashfs中的unsquashfs.c内的queue_init函数中存在整数溢出漏洞。远程攻击者可利用该漏洞通过在.sqsh文件的超级块中的特制的block_log字段执行任意代码,导致基于堆的缓冲区溢出。
CVSS Information
N/A
Vulnerability Type
N/A