VYPR

rpm package

suse/hivex&distro=SUSE Linux Enterprise Module for Development Tools 15 SP2

pkg:rpm/suse/hivex&distro=SUSE%20Linux%20Enterprise%20Module%20for%20Development%20Tools%2015%20SP2

Vulnerabilities (2)

  • CVE-2021-3622Dec 23, 2021
    affected < 1.3.14-5.6.1fixed 1.3.14-5.6.1

    A flaw was found in the hivex library. This flaw allows an attacker to input a specially crafted Windows Registry (hive) file, which would cause hivex to recursively call the _get_children() function, leading to a stack overflow. The highest threat from this vulnerability is to s

  • CVE-2021-3504May 11, 2021
    affected < 1.3.14-5.3.1fixed 1.3.14-5.3.1

    A flaw was found in the hivex library in versions before 1.3.20. It is caused due to a lack of bounds check within the hivex_open function. An attacker could input a specially crafted Windows Registry (hive) file which would cause hivex to read memory beyond its normal bounds or