VYPR

rpm package

opensuse/upx&distro=openSUSE Leap 15.1

pkg:rpm/opensuse/upx&distro=openSUSE%20Leap%2015.1

Vulnerabilities (4)

  • CVE-2019-20053Dec 27, 2019
    affected < 3.96-lp151.3.3.1fixed 3.96-lp151.3.3.1

    An invalid memory address dereference was discovered in the canUnpack function in p_mach.cpp in UPX 3.95 via a crafted Mach-O file.

  • CVE-2019-20021Dec 27, 2019
    affected < 3.96-lp151.3.3.1fixed 3.96-lp151.3.3.1

    A heap-based buffer over-read was discovered in canUnpack in p_mach.cpp in UPX 3.95 via a crafted Mach-O file.

  • CVE-2019-14296Jul 27, 2019
    affected < 3.96-lp151.3.3.1fixed 3.96-lp151.3.3.1

    canUnpack in p_vmlinx.cpp in UPX 3.95 allows remote attackers to cause a denial of service (SEGV or buffer overflow, and application crash) or possibly have unspecified other impact via a crafted UPX packed file.

  • CVE-2018-11243HigMay 18, 2018
    affected < 3.96-lp151.3.3.1fixed 3.96-lp151.3.3.1

    PackLinuxElf64::unpack in p_lx_elf.cpp in UPX 3.95 allows remote attackers to cause a denial of service (double free), limit the ability of a malware scanner to operate on the entire original data, or possibly have unspecified other impact via a crafted file.