Heap-based Buffer Over-read in liblnk_location_information_read_data

Heap-based Buffer Over-read in liblnk_location_information_read_data

CVE-2019-17401 · LOW Severity

CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:N/I:N/A:L

libyal liblnk 20191006 has a heap-based buffer over-read in the network_share_name_offset>20 code block of liblnk_location_information_read_data in liblnk_location_information.c, a different issue than CVE-2019-17264. NOTE: the vendor has disputed this as described in the GitHub issue

Learn more about our Network Penetration Testing.