Heap Buffer Overflow in the erofsreadone_data function at data.c in erofs-utils v1.6 allows remote attackers to execute arbitrary code via a crafted erofs filesystem image.
{ "urgency": "not yet assigned" }