CVE-2019-1010305: Buffer Overflow
Last updated 1 October 2025
Other sources
libmspack 0.9.1alpha is affected by: Buffer Overflow. The impact is: Information Disclosure. The component is: function chmdreadheaders() in libmspack(file libmspack/mspack/chmd.c). The attack vector is: the victim must open a specially crafted chm file. The fixed version is: after commit 2f084136cfe0d05e5bf5703f3e83c6d955234b4d.
— Launchpad
Affected Software
Remediation
Event History
Frequently Asked Questions
What is the vulnerability ID of this vulnerability?
The vulnerability ID of this vulnerability is CVE-2019-1010305.
What is the impact of this vulnerability?
The impact of this vulnerability is information disclosure.
What is the affected component of this vulnerability?
The affected component of this vulnerability is the function chmd_read_headers() in libmspack.
What is the fixed version of libmspack?
The fixed version of libmspack is after commit 2f084136...
Where can I find more information about this vulnerability?
More information about this vulnerability can be found at the following references: [Link 1](https://github.com/kyz/libmspack/commit/2f084136cfe0d05e5bf5703f3e83c6d955234b4d), [Link 2](https://github.com/kyz/libmspack/issues/27), [Link 3](https://lists.debian.org/debian-lts-announce/2019/08/msg00028.html)