CVE-2022-35015: Buffer Overflow
Advancecomp v2.3 was discovered to contain a heap buffer overflow via leuint32read at /lib/endianrw.h.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-35015?
CVE-2022-35015 is a vulnerability found in Advancecomp v2.3 that allows for a heap buffer overflow.
What is the severity level of CVE-2022-35015?
CVE-2022-35015 has a severity level of medium (5.5).
Which software versions are affected by CVE-2022-35015?
Advancecomp v2.3 and Fedoraproject Fedora versions 35, 36, and 37 are affected by CVE-2022-35015.
How can I fix CVE-2022-35015?
To fix CVE-2022-35015, update Advancecomp to a version that is not affected by this vulnerability.
Where can I find more information about CVE-2022-35015?
You can find more information about CVE-2022-35015 on the provided references: [Reference 1](https://drive.google.com/file/d/1pxNOlyl5mWXdVwkmCD4ZuXEPxI3PZAac/view?usp=sharing), [Reference 2](https://github.com/Cvjark/Poc/blob/main/advancecomp/CVE-2022-35015.md), [Reference 3](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/DYG2XAL4MBS7ADGJWYRUKBLDTBJFPJER/).