Known vulnerabilities in squashfs-tools

Vendor: plougher
Software CPE: cpe:2.3:a:plougher:squashfs-tools:*:*:*:*:*:*:*:*
Total vulnerabilities: 4
Public exploits: 0
Known exploited (KEV): 0
Highest CVSSv4 Score: 8.7

Breakdown by Severity Chart

Severity distribution of vulnerabilities affecting squashfs-tools squashfs-tools is affected by 4 known vulnerabilities: 2 medium, 2 low Critical High Medium Low

Vulnerabilities (4)

Vulnerability CWE-ID CSH Severity Public Exploit KEV First fixed release Published Bulletins
#VU83033 - Improper input validation
CVE-2015-4646
CWE-20 Low
No
No
4.4 14.11.2023 SB2017031721
SB2023111405
SB2023112742
and 4 more
#VU57416 - Improper Link Resolution Before File Access ('Link Following')
CVE-2021-41072
CWE-59 Medium
No
No
4.5.1 18.10.2021 SB2021090501
SB2021101901
SB2021091530
and 13 more
#VU56306 - Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')
CVE-2021-40153
CWE-22 Medium
No
No
4.5.1 05.09.2021 SB2021090501
SB2021090502
SB2021083142
and 15 more
#VU33418 - Integer overflow
CVE-2015-4645
CWE-190 Low
No
No
4.4 17.03.2017 SB2017031721
SB2023111405
SB2023112742
and 4 more