CVE-2019-8379

An issue was discovered in AdvanceCOMP through 2.1. A NULL pointer dereference exists in the function be_uint32_read() located in endianrw.h. It can be triggered by sending a crafted file to a binary. It allows an attacker to cause a Denial of Service (Segmentation fault) or possibly have unspecified other impact when a victim opens a specially crafted file.
Configurations

Configuration 1 (hide)

cpe:2.3:a:advancemame:advancecomp:*:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*

Configuration 3 (hide)

cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*

Configuration 4 (hide)

OR cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*

History

07 Nov 2023, 03:13

Type Values Removed Values Added
References
  • {'url': 'https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/J23C6QSTJMQ467KAI6QG54AE4MZRLPQV/', 'name': 'FEDORA-2019-b30b48200c', 'tags': ['Mailing List', 'Third Party Advisory'], 'refsource': 'FEDORA'}
  • () https://lists.fedoraproject.org/archives/list/package-announce%40lists.fedoraproject.org/message/J23C6QSTJMQ467KAI6QG54AE4MZRLPQV/ -

12 Apr 2022, 18:39

Type Values Removed Values Added
First Time Debian debian Linux
Redhat enterprise Linux For Power Little Endian
Redhat enterprise Linux Server
Debian
Redhat enterprise Linux Workstation
Fedoraproject fedora
Redhat
Fedoraproject
CPE cpe:2.3:o:redhat:enterprise_linux_for_power_little_endian:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_workstation:7.0:*:*:*:*:*:*:*
cpe:2.3:o:redhat:enterprise_linux_server:7.0:*:*:*:*:*:*:*
cpe:2.3:o:debian:debian_linux:9.0:*:*:*:*:*:*:*
cpe:2.3:o:fedoraproject:fedora:35:*:*:*:*:*:*:*
References (MLIST) https://lists.debian.org/debian-lts-announce/2021/12/msg00034.html - (MLIST) https://lists.debian.org/debian-lts-announce/2021/12/msg00034.html - Mailing List, Third Party Advisory
References (REDHAT) https://access.redhat.com/errata/RHSA-2019:2332 - (REDHAT) https://access.redhat.com/errata/RHSA-2019:2332 - Third Party Advisory
References (FEDORA) https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/J23C6QSTJMQ467KAI6QG54AE4MZRLPQV/ - (FEDORA) https://lists.fedoraproject.org/archives/list/package-announce@lists.fedoraproject.org/message/J23C6QSTJMQ467KAI6QG54AE4MZRLPQV/ - Mailing List, Third Party Advisory

30 Dec 2021, 00:15

Type Values Removed Values Added
References
  • (MLIST) https://lists.debian.org/debian-lts-announce/2021/12/msg00034.html -

Information

Published : 2019-02-17 02:29

Updated : 2023-12-10 12:44


NVD link : CVE-2019-8379

Mitre link : CVE-2019-8379

CVE.ORG link : CVE-2019-8379


JSON object : View

Products Affected

advancemame

  • advancecomp

debian

  • debian_linux

redhat

  • enterprise_linux_workstation
  • enterprise_linux_server
  • enterprise_linux_for_power_little_endian

fedoraproject

  • fedora
CWE
CWE-476

NULL Pointer Dereference