CLSA-2024-1712672449

See a problem?
Import Source
https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1712672449.json
JSON Data
https://api.osv.dev/v1/vulns/CLSA-2024-1712672449
Published
2024-04-09T14:21:57Z
Modified
2026-06-01T00:33:04Z
Summary
Update of cpio
Details
  • Fix integer overflow in dstring.c ds_fgetstr that triggers an out-of-bounds heap write
References

Affected packages

TuxCare:CentOS:7 / cpio

Package

Name
cpio
Purl
pkg:rpm/tuxcare/cpio?distro=centos-7

Affected ranges

Type
ECOSYSTEM
Events
Introduced
0 Unknown introduced version / All previous versions are affected
Fixed
2.11-28.el7.tuxcare.els1

Database specific

source
"https://github.com/cloudlinux/tuxcare-osv/tree/main/data/els_os/centos7els/CLSA-2024-1712672449.json"