Logo
vulnerabilityCVE-2020-37065
Name
CVE-2020-37065
Source
NVD ( link)Debian ( link)
Description
StreamRipper32 version 2.6 contains a buffer overflow vulnerability in the Station/Song Section that allows attackers to overwrite memory by manipulating the SongPattern input. Attackers can craft a malicious payload exceeding 256 bytes to potentially execute arbitrary code and compromise the application.
Published Date
Updated Date
Workaround
-
Advisories

Analysis#


Affected Component
Analysis
streamripper
False Positive

Vulnerability Ratings#


8.4
CVSSv4
9.8
CVSSv31
NaN
other

Others affected components#


Name
Project
Project Version
Version
Status
yocto
kirkstone
1.64.6
Not Affected
yocto
scarthgap
1.64.6
False Positive