Vulnerability Database
Blog
FAQ
Docs
arrow_forward
search
UBUNTU-CVE-2022-2061
See a problem?
Please try reporting it
to the source
first.
Source
https://ubuntu.com/security/CVE-2022-2061
Import Source
https://github.com/canonical/ubuntu-security-notices/blob/main/osv/cve/2022/UBUNTU-CVE-2022-2061.json
JSON Data
https://api.test.osv.dev/v1/vulns/UBUNTU-CVE-2022-2061
Upstream
CVE-2022-2061
Published
2022-06-13T12:15:00Z
Modified
2025-07-14T07:00:58.688290Z
Severity
2.8 (Low)
CVSS_V3 - CVSS:3.0/AV:L/AC:L/PR:L/UI:R/S:U/C:L/I:N/A:N
CVSS Calculator
3.3 (Low)
CVSS_V3 - CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
CVSS Calculator
Ubuntu - medium
Summary
[none]
Details
Heap-based Buffer Overflow in GitHub repository hpjansson/chafa prior to 1.12.0.
References
https://ubuntu.com/security/CVE-2022-2061
https://github.com/hpjansson/chafa/commit/e6ce3746cdcf0836b9dae659a5aed15d73a080d8
https://huntr.dev/bounties/365ab61f-9a63-421c-97e6-21d4653021f0/
https://huntr.dev/bounties/365ab61f-9a63-421c-97e6-21d4653021f0
https://www.cve.org/CVERecord?id=CVE-2022-2061
Affected packages
Ubuntu:Pro:20.04:LTS
/
chafa
Package
Name
chafa
Purl
pkg:deb/ubuntu/chafa@1.2.1-1?arch=source&distro=esm-apps/focal
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Affected versions
1.*
1.2.1-1
Ubuntu:22.04:LTS
/
chafa
Package
Name
chafa
Purl
pkg:deb/ubuntu/chafa@1.8.0-1?arch=source&distro=jammy
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Affected versions
1.*
1.6.0-1
1.8.0-1
Ubuntu:24.04:LTS
/
chafa
Package
Name
chafa
Purl
pkg:deb/ubuntu/chafa@1.14.0-1.1build1?arch=source&distro=noble
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Affected versions
1.*
1.12.5-1
1.12.5-3
1.14.0-1
1.14.0-1.1
1.14.0-1.1build1
Ubuntu:25.04
/
chafa
Package
Name
chafa
Purl
pkg:deb/ubuntu/chafa@1.14.5-1?arch=source&distro=plucky
Affected ranges
Type
ECOSYSTEM
Events
Introduced
0
Unknown introduced version / All previous versions are affected
Affected versions
1.*
1.14.0-1.1build1
1.14.4-2
1.14.5-1
UBUNTU-CVE-2022-2061 - OSV