hessu / bchunk

BinChunker for Unix / Linux converts .bin / .cue images to .iso and .cdr
GNU General Public License v2.0
66 stars 15 forks source link

CVE-2017-15955: Access violation near NULL on destination operand and crash when processing a malformed CUE file #2

Closed hessu closed 7 years ago

hessu commented 7 years ago

bchunk 1.2.0 dies with access violation near NULL on destination operand when processing a malformed CUE file.

Fix committed in c021dcddd07fa78d95217373c83f9caa74a1ced4 provided by Yegor Timoshenko. Fixed in version 1.2.2.

https://cve.mitre.org/cgi-bin/cvename.cgi?name=CVE-2017-15955 https://www.debian.org/security/2017/dsa-4026