ZeroHour

CVE-2022-4899

CVSS 3.1
7.5 high
EPSS
2%p74
Published
()
Modified
Description

A vulnerability was found in zstd v1.4.10, where an attacker can supply empty string as an argument to the command line tool to cause buffer overrun.

Vendors
facebook
Products
zstandard
Weakness
CWE-400
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:N/I:N/A:H

In the news

No ingested article mentions this CVE yet.