Vulnerabilities > CVE-2020-29367 - Out-of-bounds Write vulnerability in C-Blosc2 Project C-Blosc2 2.0.0

047910
CVSS 9.3 - CRITICAL
Attack vector
NETWORK
Attack complexity
MEDIUM
Privileges required
NONE
Confidentiality impact
COMPLETE
Integrity impact
COMPLETE
Availability impact
COMPLETE
network
c-blosc2-project
CWE-787
critical

Summary

blosc2.c in Blosc C-Blosc2 through 2.0.0.beta.5 has a heap-based buffer overflow when there is a lack of space to write compressed data.

Vulnerable Configurations

Part Description Count
Application
C-Blosc2_Project
9

Common Weakness Enumeration (CWE)