nDPI through 4.12 has a potential stack-based buffer overflow in ndpiaddresscacherestore in lib/ndpicache.c.
{
"binaries": [
{
"binary_name": "libndpi-bin",
"binary_version": "4.2-2.1build1"
},
{
"binary_name": "libndpi-dev",
"binary_version": "4.2-2.1build1"
},
{
"binary_name": "libndpi-wireshark",
"binary_version": "4.2-2.1build1"
},
{
"binary_name": "libndpi4.2t64",
"binary_version": "4.2-2.1build1"
}
]
}{
"binaries": [
{
"binary_name": "libndpi-bin",
"binary_version": "4.2-2.1build1"
},
{
"binary_name": "libndpi-dev",
"binary_version": "4.2-2.1build1"
},
{
"binary_name": "libndpi-wireshark",
"binary_version": "4.2-2.1build1"
},
{
"binary_name": "libndpi4.2t64",
"binary_version": "4.2-2.1build1"
}
]
}{
"binaries": [
{
"binary_name": "libndpi-bin",
"binary_version": "4.2-2.1build1"
},
{
"binary_name": "libndpi-dev",
"binary_version": "4.2-2.1build1"
},
{
"binary_name": "libndpi-wireshark",
"binary_version": "4.2-2.1build1"
},
{
"binary_name": "libndpi4.2t64",
"binary_version": "4.2-2.1build1"
}
]
}