CVE-2017-13760: Buffer Overflow
Published Aug 29, 2017
·Updated
In The Sleuth Kit (TSK) 4.4.2, fls hangs on a corrupt exfat image in tskimgread() in tsk/img/imgio.c in libtskimg.a.
Affected Software
2 affected components
sleuthkit The Sleuth Kit=4.4.2
Debian Debian Linux=9.0
Event History
Aug 29, 2017
CVE Published
via MITRE·11:00 PM
Data Sourced
via MITRE·11:00 PM
Description
Frequently Asked Questions
1
What is the severity of CVE-2017-13760?
CVE-2017-13760 has a medium severity level as it causes a hang in the program rather than executing remote code.
2
How do I fix CVE-2017-13760?
To fix CVE-2017-13760, update to a later version of The Sleuth Kit that addresses this vulnerability.
3
Which software versions are affected by CVE-2017-13760?
CVE-2017-13760 affects version 4.4.2 of The Sleuth Kit and Debian GNU/Linux 9.0.
4
What is the impact of CVE-2017-13760?
The impact of CVE-2017-13760 is that it causes the command fls to hang when processing a corrupt exfat image.
5
Can CVE-2017-13760 lead to data loss?
CVE-2017-13760 can potentially lead to data loss if the system hangs, causing disruptions in file system investigations.