openwrt ▾
›
openwrt-25.12 ▾
›
component
›
lrzsz
Component Overview
Vulnerability Overview
Name
lrzsz
Version
0.12.21-
Type
library
Description
-
Licenses
-
PURL
-
CPE
cpe:2.3:a:lrzsz_project:lrzsz:0.12.21:*:*:*:*:*:*:*
Other Versions
#
Project
Branch
Version
openwrt
master
0.12.21-r1
Patches
#
#
Title
Author
Resolve
1
Patch #1
Unknown
2
Patch #2
Robert Marko <robimarko@gmail.com>
3
Patch #3
Petr Štetiar <ynezz@true.cz>
4
Patch #4
Unknown
5
siginterrupt after the call to signal, otherwise ymodem
Uwe Ohse <uwe@ohse.de>
6
may-be-security-fix: avoid possible underflow
Uwe Ohse <uwe@ohse.de>
CVE-2018-10195
Vulnerabilities
#
Name
Analysis
Description
CVE-2018-10195
Patched
lrzsz before version 0.12.21~rc can leak information to the receiving side due to an incorrect length check in the function zsdata that causes a size_t to wrap around.