A vulnerability was found in zstd v1.4.10, where an attacker can supply empty string as an argument to the command line tool to cause buffer overrun.
References
Configurations
History
No history.
Information
Published : 2023-03-31 20:15
Updated : 2023-11-07 03:59
NVD link : CVE-2022-4899
Mitre link : CVE-2022-4899
CVE.ORG link : CVE-2022-4899
JSON object : View
Products Affected
- zstandard
CWE
CWE-400
Uncontrolled Resource Consumption