Vulnerabilities (CVE)

Filtered by vendor Sleuthkit Subscribe
Filtered by product The Sleuth Kit
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-10232 1 Sleuthkit 1 The Sleuth Kit 2022-06-20 7.5 HIGH 9.8 CRITICAL
In version 4.8.0 and earlier of The Sleuth Kit (TSK), there is a stack buffer overflow vulnerability in the YAFFS file timestamp parsing logic in yaffsfs_istat() in fs/yaffs.c.
CVE-2019-14532 1 Sleuthkit 1 The Sleuth Kit 2021-07-21 7.5 HIGH 9.8 CRITICAL
An issue was discovered in The Sleuth Kit (TSK) 4.6.6. There is an off-by-one overwrite due to an underflow on tools/hashtools/hfind.cpp while using a bogus hash table.
CVE-2020-10233 1 Sleuthkit 1 The Sleuth Kit 2020-05-17 6.4 MEDIUM 9.1 CRITICAL
In version 4.8.0 and earlier of The Sleuth Kit (TSK), there is a heap-based buffer over-read in ntfs_dinode_lookup in fs/ntfs.c.
CVE-2019-14531 1 Sleuthkit 1 The Sleuth Kit 2019-08-12 7.5 HIGH 9.8 CRITICAL
An issue was discovered in The Sleuth Kit (TSK) 4.6.6. There is an out of bounds read on iso9660 while parsing System Use Sharing Protocol data in fs/iso9660.c.