Bug#914796: sleuthkit: CVE-2018-19497 out of bounds read in Sleuthkit

2019-04-08 Thread Moritz Mühlenhoff
On Tue, Feb 19, 2019 at 05:39:10PM +0100, Moritz Mühlenhoff wrote: > On Tue, Nov 27, 2018 at 01:38:43PM +0100, Jordy Zomer wrote: > > Package: sleuthkit > > Version: 4.2.0-3 > > Severity: normal > > > > Dear Maintainer, > > > > An issue was discovered in The Sleuth Kit (TSK) through 4.6.4. > >

Bug#914796: sleuthkit: CVE-2018-19497 out of bounds read in Sleuthkit

2019-02-19 Thread Moritz Mühlenhoff
On Tue, Nov 27, 2018 at 01:38:43PM +0100, Jordy Zomer wrote: > Package: sleuthkit > Version: 4.2.0-3 > Severity: normal > > Dear Maintainer, > > An issue was discovered in The Sleuth Kit (TSK) through 4.6.4. > The "tsk_getu16(hfs->fs_info.endian, _buf[rec_off2])" call in > hfs_dir_open_meta_cb

Bug#914796: sleuthkit: CVE-2018-19497 out of bounds read in Sleuthkit

2018-11-27 Thread Jordy Zomer
Package: sleuthkit Version: 4.2.0-3 Severity: normal Dear Maintainer, An issue was discovered in The Sleuth Kit (TSK) through 4.6.4. The "tsk_getu16(hfs->fs_info.endian, _buf[rec_off2])" call in hfs_dir_open_meta_cb in tsk/fs/hfs_dent.c does not properly check boundaries. This results in a