PSPP 1.6.2 Heap Buffer Overflow in read_bytes_internal (pspp-dump-sav.c)
CVE-2022-39831 Published on September 5, 2022

An issue was discovered in PSPP 1.6.2. There is a heap-based buffer overflow at the function read_bytes_internal in utilities/pspp-dump-sav.c, which allows attackers to cause a denial of service (application crash) or possibly have unspecified other impact. This issue is different from CVE-2018-20230.

Vendor Advisory Vendor Advisory NVD


Products Associated with CVE-2022-39831

stack.watch emails you whenever new vulnerabilities are published in GNU Pspp or Fedora Project Fedora. Just hit a watch button to start following.

 
 

Exploit Probability

EPSS
0.07%
Percentile
20.66%

EPSS (Exploit Prediction Scoring System) scores estimate the probability that a vulnerability will be exploited in the wild within the next 30 days. The percentile shows you how this score compares to all other vulnerabilities.