High severity7.8NVD Advisory· Published Nov 17, 2017· Updated May 13, 2026
CVE-2017-16869
CVE-2017-16869
Description
p_mach.cpp in UPX 3.94 allows remote attackers to cause a denial of service (invalid memory access and application crash) or possibly have unspecified other impact via a crafted Mach-O file, related to canPack and unpack functions. NOTE: the vendor has stated "there is no security implication whatsoever.
Affected products
1Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1- github.com/upx/upx/issues/146nvdThird Party Advisory
News mentions
0No linked articles in our index yet.