TROYANOSYVIRUS
Voltar para CVEs

CVE-2018-12096

N/A

Descricao

The liblnk_data_string_get_utf8_string_size function in liblnk_data_string.c in liblnk through 2018-04-19 allows remote attackers to cause an information disclosure (heap-based buffer over-read) via a crafted lnk file. NOTE: the vendor has disputed this as described in libyal/liblnk issue 33 on GitHub

Detalhes CVE

Pontuacao CVSS v3.1N/A
Publicado6/19/2018
Ultima modificacao11/21/2024
Fontenvd
Avistamentos honeypot0

Produtos afetados

liblnk_project:liblnk

Fraquezas (CWE)

CWE-125

Referencias

Correlacoes IOC

Sem correlacoes registradas

This product uses data from the NVD API but is not endorsed or certified by the NVD.