CVE-2018-18584
In mspack/cab.h in libmspack before 0.8alpha and cabextract before 1.8, the CAB block input buffer is one byte too small
In mspack/cab.h in libmspack before 0.8alpha and cabextract before 1.8, the CAB block input buffer is one byte too small for the maximal Quantum block, leading to an out-of-bounds write.
MEDIUM · CVSS 6.5
EPSS 0.05833
Monitor
- EPSS percentile: top 9% of all CVEs by exploitation likelihood
Sigma rules0
YARA rules0