Posts NULL Pointer Dereference | Deark
Post
Cancel

NULL Pointer Dereference | Deark

Software: https://github.com/jsummers/deark/

Version: 1.5.7-1

Vulnerability: NULL Pointer Dereference

CVE: CVE-2021-28855

Description of the product:

A utility for file format and metadata analysis, data extraction, decompression, and image format decoding.

Summary:

An issue was discovered in Deark v1.5.7-1. A specially crafted input file can cause a NULL pointer dereference in dbuf_write function (src/deark-dbuf.c:1376).

Fix:

https://github.com/jsummers/deark/commit/287f5ac31dfdc074669182f51ece637706070eeb

This post is licensed under CC BY 4.0 by the author.