PT-2026-107993 · Aorimn · Dislocker
CVE-2026-107634
·
Publicado
2026-10-08
·
Atualizado
2026-10-08
CVSS v3.1
6.1
Média
| Vetor | AV:L/AC:L/PR:N/UI:R/S:U/C:L/I:N/A:H |
Dislocker through 0.7.3 contains a heap out-of-bounds read vulnerability in get dataset() and get next datum() that never validate dataset and datum sizes against the metadata allocation. Attackers can craft a BitLocker volume image with inflated dataset or datum sizes that, when opened or mounted, crashes dislocker or discloses adjacent heap memory.
Correção
Out of bounds Read
Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾
Enumeração de Fraquezas
Identificadores relacionados
Produtos afetados
Dislocker