exfatprogs before 1.2.2 allows out-of-bounds memory access, such as in readfiledentry_set.
[
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"57281315542029950148247632263959879872",
"23277999475718913689138269932086655035",
"162753123910180887892652251390296922873",
"150452354142307322599398744857487056009"
]
},
"target": {
"file": "exfat2img/exfat2img.c"
},
"signature_type": "Line",
"deprecated": false,
"source": "https://github.com/exfatprogs/exfatprogs/commit/4abc55e976573991e6a1117bb2b3711e59da07ae",
"signature_version": "v1",
"id": "CVE-2023-45897-5130db9f"
},
{
"digest": {
"length": 1110.0,
"function_hash": "16315377790126865809972839704440423591"
},
"target": {
"function": "read_file_dentry_set",
"file": "exfat2img/exfat2img.c"
},
"signature_type": "Function",
"deprecated": false,
"source": "https://github.com/exfatprogs/exfatprogs/commit/4abc55e976573991e6a1117bb2b3711e59da07ae",
"signature_version": "v1",
"id": "CVE-2023-45897-be1811f5"
},
{
"digest": {
"threshold": 0.9,
"line_hashes": [
"313111092058101743152807331556692969033",
"71984351098886760132004871556604508369",
"53027503568137431192748708533308331260",
"77473243193527385197205588199473811223",
"250533753512600629636563929939882876553",
"99898220236666014950996930001446340478",
"156244308949481495916506672307421781746",
"51815395045679562471781629667672251469",
"55025610335752903729870345189497816731",
"209066183281152192685307647544854738155",
"153126590904881026181305115138417429291",
"133949269000974180610002851346591542390"
]
},
"target": {
"file": "fsck/fsck.c"
},
"signature_type": "Line",
"deprecated": false,
"source": "https://github.com/exfatprogs/exfatprogs/commit/22d0e43e8d24119cbfc6efafabb0dec6517a86c4",
"signature_version": "v1",
"id": "CVE-2023-45897-ccbba281"
},
{
"digest": {
"length": 1455.0,
"function_hash": "210372419343680014865758988504111015700"
},
"target": {
"function": "handle_dot_dotdot_filename",
"file": "fsck/fsck.c"
},
"signature_type": "Function",
"deprecated": false,
"source": "https://github.com/exfatprogs/exfatprogs/commit/22d0e43e8d24119cbfc6efafabb0dec6517a86c4",
"signature_version": "v1",
"id": "CVE-2023-45897-dd95bf8d"
}
]