Back

HIGH

zstd: mysql: buffer overrun in util.c

Published Mar 31, 2023

Description

A vulnerability was found in zstd v1.4.10, where an attacker can supply empty string as an argument to the command line tool to cause buffer overrun.

Affected products

Remediation

Red Hat statement

The vulnerability in the zstd command-line utility is rated as Moderate Severity because it involves an Incorrect Calculation of Buffer Size (CWE-400) within the mallocAndJoin2Dir function in programs/util.c. A remote attacker can exploit this flaw by providing an input, specifically an empty string, which causes a function boundary error and results in a heap-based Out-of-Bounds Read on memory. This ultimately leads to a program crash, causing a Denial of Service condition that is limited to the specific zstd process or service instance, rather than affecting the entire host system's stability.

References (17)

Change history (0)

No recorded changes yet.

Sources

CVE.org / MITRE

Status PUBLISHED
Assigner redhat
Published Mar 31, 2023
Updated Feb 18, 2025
Reserved Jan 31, 2023

CISA Vulnrichment

Updated Feb 18, 2025

NVD

Status Modified
Modified Jun 17, 2026

Red Hat

Severity Moderate
Public date Jul 17, 2022
Bugzilla 2179864

ENISA EUVD

Assigner redhat
Published Mar 31, 2023
Updated Feb 18, 2025