Executive brief
A vulnerability in the LIEF::MachO::SegmentCommand::virtual_address function of LIEF v0.12.1 allows attackers to cause a denial of service (DOS) through a segmentation fault via a crafted MachO file.
Affected products
- PyPI lief
Junglewise Threat Intelligence
CVE-2022-40923 · Severity: low · CVSS 3.1 · Published 2022-09-30
Technologies: lief (PyPI). Vendors: PyPI.
A vulnerability in the LIEF::MachO::SegmentCommand::virtual_address function of LIEF v0.12.1 allows attackers to cause a denial of service (DOS) through a segmentation fault via a crafted MachO file.