A heap-based buffer over-read was discovered in the acc_ua_get_be32 function in miniacc.h in UPX 4.0.0 via a crafted Mach-O file.
Metrics
Affected Vendors & Products
References
Link | Providers |
---|---|
https://github.com/upx/upx/issues/391 |
![]() ![]() |
History
Fri, 11 Apr 2025 12:45:00 +0000
Type | Values Removed | Values Added |
---|---|---|
First Time appeared |
Upx
Upx upx |
|
CPEs | cpe:2.3:a:upx:upx:4.0.0:*:*:*:*:*:*:* | |
Vendors & Products |
Upx Project
Upx Project upx |
Upx
Upx upx |

Status: PUBLISHED
Assigner: redhat
Published:
Updated: 2024-08-04T16:25:43.968Z
Reserved: 2020-10-27T00:00:00
Link: CVE-2020-27799

No data.

Status : Modified
Published: 2022-08-25T20:15:08.630
Modified: 2025-04-11T12:27:55.013
Link: CVE-2020-27799

No data.