Vulnerability Description
partclone.restore in Partclone 0.2.87 is prone to a heap-based buffer overflow vulnerability due to insufficient validation of the partclone image header. An attacker may be able to execute arbitrary code in the context of the user running the affected application.
CVSS Score
CRITICAL
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Partclone | Partclone | 0.2.87 |
Related Weaknesses (CWE)
References
- https://github.com/Thomas-Tsai/partclone/issues/82Issue TrackingThird Party Advisory
- https://github.com/Thomas-Tsai/partclone/issues/82Issue TrackingThird Party Advisory
FAQ
What is CVE-2016-10721?
CVE-2016-10721 is a vulnerability with a CVSS score of 9.8 (CRITICAL). partclone.restore in Partclone 0.2.87 is prone to a heap-based buffer overflow vulnerability due to insufficient validation of the partclone image header. An attacker may be able to execute arbitrary ...
How severe is CVE-2016-10721?
CVE-2016-10721 has been rated CRITICAL with a CVSS base score of 9.8/10. This is considered a critical vulnerability requiring immediate attention.
Is there a patch for CVE-2016-10721?
Check the references section above for vendor advisories and patch information. Affected products include: Partclone Partclone.