In version 4.8.0 and earlier of The Sleuth Kit (TSK), there is a stack buffer overflow vulnerability in the YAFFS file timestamp parsing logic in yaffsfs_istat() in fs/yaffs.c.
{ "binaries": [ { "binary_name": "libtsk-dev", "binary_version": "3.2.3-2.2ubuntu0.1~esm1" }, { "binary_name": "libtsk3-3", "binary_version": "3.2.3-2.2ubuntu0.1~esm1" }, { "binary_name": "sleuthkit", "binary_version": "3.2.3-2.2ubuntu0.1~esm1" } ] }
{ "binaries": [ { "binary_name": "libtsk-dev", "binary_version": "4.2.0-3ubuntu0.1~esm1" }, { "binary_name": "libtsk13", "binary_version": "4.2.0-3ubuntu0.1~esm1" }, { "binary_name": "sleuthkit", "binary_version": "4.2.0-3ubuntu0.1~esm1" } ] }
{ "binaries": [ { "binary_name": "libtsk-dev", "binary_version": "4.4.2-3" }, { "binary_name": "libtsk13", "binary_version": "4.4.2-3" }, { "binary_name": "sleuthkit", "binary_version": "4.4.2-3" } ] }
{ "binaries": [ { "binary_name": "libtsk-dev", "binary_version": "4.6.7-1build1" }, { "binary_name": "libtsk13", "binary_version": "4.6.7-1build1" }, { "binary_name": "sleuthkit", "binary_version": "4.6.7-1build1" } ] }
{ "binaries": [ { "binary_name": "libtsk-dev", "binary_version": "4.11.1+dfsg-1" }, { "binary_name": "libtsk19", "binary_version": "4.11.1+dfsg-1" }, { "binary_name": "sleuthkit", "binary_version": "4.11.1+dfsg-1" } ] }