An issue was discovered in The Sleuth Kit (TSK) 4.6.6. There is an off-by-one overwrite due to an underflow on tools/hashtools/hfind.cpp while using a bogus hash table.
{ "binaries": [ { "binary_version": "4.11.1+dfsg-1", "binary_name": "libtsk-dev" }, { "binary_version": "4.11.1+dfsg-1", "binary_name": "libtsk19" }, { "binary_version": "4.11.1+dfsg-1", "binary_name": "sleuthkit" } ] }
{ "binaries": [ { "binary_version": "4.12.1+dfsg-1.1ubuntu2", "binary_name": "libtsk-dev" }, { "binary_version": "4.12.1+dfsg-1.1ubuntu2", "binary_name": "libtsk19t64" }, { "binary_version": "4.12.1+dfsg-1.1ubuntu2", "binary_name": "sleuthkit" } ] }
{ "binaries": [ { "binary_version": "3.2.3-2.2ubuntu0.1~esm1", "binary_name": "libtsk-dev" }, { "binary_version": "3.2.3-2.2ubuntu0.1~esm1", "binary_name": "libtsk3-3" }, { "binary_version": "3.2.3-2.2ubuntu0.1~esm1", "binary_name": "sleuthkit" } ] }
{ "binaries": [ { "binary_version": "4.2.0-3ubuntu0.1~esm1", "binary_name": "libtsk-dev" }, { "binary_version": "4.2.0-3ubuntu0.1~esm1", "binary_name": "libtsk13" }, { "binary_version": "4.2.0-3ubuntu0.1~esm1", "binary_name": "sleuthkit" } ] }
{ "binaries": [ { "binary_version": "4.4.2-3", "binary_name": "libtsk-dev" }, { "binary_version": "4.4.2-3", "binary_name": "libtsk13" }, { "binary_version": "4.4.2-3", "binary_name": "sleuthkit" } ] }
{ "binaries": [ { "binary_version": "4.6.7-1build1", "binary_name": "libtsk-dev" }, { "binary_version": "4.6.7-1build1", "binary_name": "libtsk13" }, { "binary_version": "4.6.7-1build1", "binary_name": "sleuthkit" } ] }