First published: Mon Aug 29 2022(Updated: )
Advancecomp v2.3 was discovered to contain a heap buffer overflow via le_uint32_read at /lib/endianrw.h.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Advancemame Advancecomp | =2.3 | |
Fedoraproject Fedora | =35 | |
Fedoraproject Fedora | =36 | |
Fedoraproject Fedora | =37 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2022-35015 is a vulnerability found in Advancecomp v2.3 that allows for a heap buffer overflow.
CVE-2022-35015 has a severity level of medium (5.5).
Advancecomp v2.3 and Fedoraproject Fedora versions 35, 36, and 37 are affected by CVE-2022-35015.
To fix CVE-2022-35015, update Advancecomp to a version that is not affected by this vulnerability.
You can find more information about CVE-2022-35015 on the provided references: [Reference 1](https://drive.google.com/file/d/1pxNOlyl5mWXdVwkmCD4ZuXEPxI3PZAac/view?usp=sharing), [Reference 2](https://github.com/Cvjark/Poc/blob/main/advancecomp/CVE-2022-35015.md), [Reference 3](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DYG2XAL4MBS7ADGJWYRUKBLDTBJFPJER/).