CVE-2022-48554: File before 5.43 has an stack-based buffer over-read in file_copystr in funcs.c. NOTE: "File" is the name of an Open Source project. A fix isn't explicitly referenced, but upstream's tracker calls this fixed in >=5.42.
The bug has been referenced in the following commit(s): https://gitweb.gentoo.org/data/glsa.git/commit/?id=a6214968cd131e222d57f5ee5fcbafe13e8f88af commit a6214968cd131e222d57f5ee5fcbafe13e8f88af Author: GLSAMaker <glsamaker@gentoo.org> AuthorDate: 2024-09-22 06:04:59 +0000 Commit: Hans de Graaff <graaff@gentoo.org> CommitDate: 2024-09-22 06:05:07 +0000 [ GLSA 202409-06 ] file: Stack Buffer Overread Bug: https://bugs.gentoo.org/918554 Signed-off-by: GLSAMaker <glsamaker@gentoo.org> Signed-off-by: Hans de Graaff <graaff@gentoo.org> glsa-202409-06.xml | 42 ++++++++++++++++++++++++++++++++++++++++++ 1 file changed, 42 insertions(+)