Vulnerabilities > CVE-2022-28044 - Out-of-bounds Write vulnerability in multiple products

047910
CVSS 7.5 - HIGH
Attack vector
NETWORK
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
PARTIAL
network
low complexity
irzip-project
debian
CWE-787

Summary

Irzip v0.640 was discovered to contain a heap memory corruption via the component lrzip.c:initialise_control.

Common Weakness Enumeration (CWE)