Junglewise Threat Intelligence

CVE-2022-40923: PYSEC-2022-43139 - A vulnerability in the LIEF::MachO::SegmentCommand::virtual_address function of LIEF v0.12.1 allows attackers to cause a denial of service (

CVE-2022-40923 · Severity: low · CVSS 3.1 · Published 2022-09-30

Technologies: lief (PyPI). Vendors: PyPI.

Executive brief

A vulnerability in the LIEF::MachO::SegmentCommand::virtual_address function of LIEF v0.12.1 allows attackers to cause a denial of service (DOS) through a segmentation fault via a crafted MachO file.

Affected products

  • PyPI lief

Related threats