/
DirectorySecurity Advisories
Sign In
Security Advisories

CVE-2023-23456

Published

Last updated

NVD

https://nvd.nist.gov/vuln/detail/CVE-2023-23456

CGA ID

CGA-g3mj-mgw5-p2gw

Severity

5.5

Medium

CVSS V3

Description

A heap-based buffer overflow issue was discovered in UPX in PackTmt::pack() in p_tmt.cpp file. The flow allows an attacker to cause a denial of service (abort) via a crafted file.

References

Affected packages


Safe Source for Open Sourceâ„¢
Media KitContact Us
© 2024 Chainguard. All Rights Reserved.
Private PolicyTerms of Use

Product

Chainguard Images