nDPI through 4.12 has a potential stack-based buffer overflow in ndpiaddresscacherestore in lib/ndpicache.c.
{
"binaries": [
{
"binary_version": "4.2-2.1build1",
"binary_name": "libndpi-bin"
},
{
"binary_version": "4.2-2.1build1",
"binary_name": "libndpi-dev"
},
{
"binary_version": "4.2-2.1build1",
"binary_name": "libndpi-wireshark"
},
{
"binary_version": "4.2-2.1build1",
"binary_name": "libndpi4.2t64"
}
]
}{
"binaries": [
{
"binary_version": "4.2-2.1build1",
"binary_name": "libndpi-bin"
},
{
"binary_version": "4.2-2.1build1",
"binary_name": "libndpi-dev"
},
{
"binary_version": "4.2-2.1build1",
"binary_name": "libndpi-wireshark"
},
{
"binary_version": "4.2-2.1build1",
"binary_name": "libndpi4.2t64"
}
]
}{
"binaries": [
{
"binary_version": "4.2-2.1build1",
"binary_name": "libndpi-bin"
},
{
"binary_version": "4.2-2.1build1",
"binary_name": "libndpi-dev"
},
{
"binary_version": "4.2-2.1build1",
"binary_name": "libndpi-wireshark"
},
{
"binary_version": "4.2-2.1build1",
"binary_name": "libndpi4.2t64"
}
]
}