Vulnerabilities > CVE-2023-37186 - NULL Pointer Dereference vulnerability in C-Blosc2 Project C-Blosc2
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
NONE Integrity impact
NONE Availability impact
HIGH Summary
C-blosc2 before 2.9.3 was discovered to contain a NULL pointer dereference in ndlz/ndlz8x8.c via a NULL pointer to memset.
Vulnerable Configurations
Common Weakness Enumeration (CWE)
References
- https://github.com/Blosc/c-blosc2/commit/d55bfcd6804699e1435dc3e233fd76c8a5d3f9e3
- https://github.com/Blosc/c-blosc2/commit/d55bfcd6804699e1435dc3e233fd76c8a5d3f9e3
- https://github.com/Blosc/c-blosc2/compare/v2.9.2...v2.9.3
- https://github.com/Blosc/c-blosc2/compare/v2.9.2...v2.9.3
- https://github.com/Blosc/c-blosc2/issues/522
- https://github.com/Blosc/c-blosc2/issues/522