CVE-2022-39832: Buffer Overflow
An issue was discovered in PSPP 1.6.2. There is a heap-based buffer overflow at the function readstring in utilities/pspp-dump-sav.c, which allows attackers to cause a denial of service (application crash) or possibly have unspecified other impact.
Affected Software
Event History
Frequently Asked Questions
What is CVE-2022-39832?
CVE-2022-39832 is a vulnerability discovered in PSPP 1.6.2 that allows attackers to cause a denial of service or potentially have other unspecified impact.
What is the severity of CVE-2022-39832?
CVE-2022-39832 has a severity score of 7.8, which is considered high.
Which software versions are affected by CVE-2022-39832?
PSPP 1.6.2, Fedoraproject Fedora 36, and Fedoraproject Fedora 37 are affected by CVE-2022-39832.
How can CVE-2022-39832 be exploited?
CVE-2022-39832 can be exploited through a heap-based buffer overflow at the function read_string in utilities/pspp-dump-sav.c.
Are there any references for CVE-2022-39832?
Yes, you can find more information about CVE-2022-39832 at the following links: [Link 1](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/OECANCPD4WSSBJLSC3EE472M5DXRTIS4/), [Link 2](https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/VQKWIVW5WJ5ZQNNQFRKTRKD7J3LRLUYW/), [Link 3](https://savannah.gnu.org/bugs/index.php?63000).