← back
CVE-2018-8754

CVE-2018-8754

EPSS 0.3%
The libevt_record_values_read_event() function in libevt_record_values.c in libevt before 2018-03-17 does not properly check for out-of-bounds values of user SID data size, strings size, or data size. NOTE: the vendor has disputed this as described in libyal/libevt issue 5 on GitHub
Affected products
n/a · n/a

Want to know if your infrastructure is exposed to this?

Talk to TrueHacking →