LIEF commit 5d1d643 was discovered to contain a segmentation violation via the function LIEF::MachO::SegmentCommand::file_offset()
at /MachO/SegmentCommand.cpp
. Commit 7acf0bc4224081d4f425fcc8b2e361b95291d878 contains a patch.
References
- https://nvd.nist.gov/vuln/detail/CVE-2022-38307
- https://github.com/lief-project/LIEF/issues/764
- https://github.com/lief-project/LIEF/commit/7acf0bc4224081d4f425fcc8b2e361b95291d878
- https://github.com/pypa/advisory-database/tree/main/vulns/lief/PYSEC-2022-275.yaml
- https://github.com/advisories/GHSA-x2xx-jw5m-5j86