An issue was discovered in The Sleuth Kit (TSK) 4.6.6. There is an off-by-one overwrite due to an underflow on tools/hashtools/hfind.cpp while using a bogus hash table.
{ "binaries": [ { "binary_name": "libtsk-dev", "binary_version": "4.4.2-3" }, { "binary_name": "libtsk13", "binary_version": "4.4.2-3" }, { "binary_name": "sleuthkit", "binary_version": "4.4.2-3" } ] }
"https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2019/UBUNTU-CVE-2019-14532.json"
{ "binaries": [ { "binary_name": "libtsk-dev", "binary_version": "4.6.7-1build1" }, { "binary_name": "libtsk13", "binary_version": "4.6.7-1build1" }, { "binary_name": "sleuthkit", "binary_version": "4.6.7-1build1" } ] }
{ "binaries": [ { "binary_name": "libtsk-dev", "binary_version": "4.11.1+dfsg-1" }, { "binary_name": "libtsk19", "binary_version": "4.11.1+dfsg-1" }, { "binary_name": "sleuthkit", "binary_version": "4.11.1+dfsg-1" } ] }
{ "binaries": [ { "binary_name": "libtsk-dev", "binary_version": "4.12.1+dfsg-1.1ubuntu2" }, { "binary_name": "libtsk19t64", "binary_version": "4.12.1+dfsg-1.1ubuntu2" }, { "binary_name": "sleuthkit", "binary_version": "4.12.1+dfsg-1.1ubuntu2" } ] }
{ "binaries": [ { "binary_name": "libtsk-dev", "binary_version": "4.12.1+dfsg-3" }, { "binary_name": "libtsk19t64", "binary_version": "4.12.1+dfsg-3" }, { "binary_name": "sleuthkit", "binary_version": "4.12.1+dfsg-3" } ] }
{ "binaries": [ { "binary_name": "libtsk-dev", "binary_version": "3.2.3-2.2ubuntu0.1~esm1" }, { "binary_name": "libtsk3-3", "binary_version": "3.2.3-2.2ubuntu0.1~esm1" }, { "binary_name": "sleuthkit", "binary_version": "3.2.3-2.2ubuntu0.1~esm1" } ] }
{ "binaries": [ { "binary_name": "libtsk-dev", "binary_version": "4.2.0-3ubuntu0.1~esm1" }, { "binary_name": "libtsk13", "binary_version": "4.2.0-3ubuntu0.1~esm1" }, { "binary_name": "sleuthkit", "binary_version": "4.2.0-3ubuntu0.1~esm1" } ] }