Buffer overflow in hyperscan - CVE-2022-29486
Published: August 14, 2023
Vulnerability details
The vulnerability allows a remote attacker to execute arbitrary code on the target system.
The vulnerability exists due to a boundary error in src/compiler/compiler.cpp. A remote attacker can create a specially crafted file, trick the victim into using it during project compilation, trigger memory corruption and execute arbitrary code on the target system.
Affected software
openEuler
hyperscan
hyperscan-debugsource
hyperscan-debuginfo
hyperscan-devel
How to mitigate CVE-2022-29486
hyperscan - update to 5.2.1-3
hyperscan-debugsource - update to 5.2.1-3
hyperscan-debuginfo - update to 5.2.1-3
hyperscan-devel - update to 5.2.1-3