NA

CVE-2022-39832

Published: 05/09/2022 Updated: 07/11/2023
CVSS v3 Base Score: 7.8 | Impact Score: 5.9 | Exploitability Score: 1.8
VMScore: 0

Vulnerability Summary

An issue exists in PSPP 1.6.2. There is a heap-based buffer overflow at the function read_string in utilities/pspp-dump-sav.c, which allows malicious users to cause a denial of service (application crash) or possibly have unspecified other impact.

Vulnerability Trend

Vulnerable Product Search on Vulmon Subscribe to Product

gnu pspp 1.6.2

fedoraproject fedora 36

fedoraproject fedora 37

Vendor Advisories

Debian Bug report logs - #1019598 pspp: CVE-2022-39832 Package: src:pspp; Maintainer for src:pspp is Friedrich Beckmann <friedrichbeckmann@gmxde>; Reported by: Moritz Mühlenhoff <jmm@inutilorg> Date: Mon, 12 Sep 2022 20:39:09 UTC Severity: important Tags: security, upstream Found in version pspp/162-1 Forwa ...