Back to Database
Status published
High
CVE-2019-15540
filters/filter-cso/filter-stream.c in the CSO filter in libMirage 3.2.2 in CDemu...
Vulnerability Description
filters/filter-cso/filter-stream.c in the CSO filter in libMirage 3.2.2 in CDemu does not validate the part size, triggering a heap-based buffer overflow that can lead to root access by a local Linux user.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
THREAT MONITOR
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2019-15540
Credits & Attribution
No credits recorded in the NVD database.
References
- https://sourceforge.net/p/cdemu/bugs/119/
- https://sourceforge.net/p/cdemu/code/ci/0e9292c9aa34bf545f43f7efe5f0b94faba94962/
- https://gist.github.com/andreafioraldi/baa79cd78131888d98d6ba680d5f514e
- http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00086.html
- http://lists.opensuse.org/opensuse-security-announce/2019-08/msg00089.html
- http://lists.opensuse.org/opensuse-security-announce/2019-09/msg00017.html
Affected Vendor
cdemu
View all reports →Affected Software
libmirage
Vulnerable Versions:
3.2.2
Timeline
Official Publish:
August 25th, 2019
Last Modified:
August 5th, 2024
Added to House:
July 20th, 2026
CVSS Vectors
V3:
CVSS:3.0/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.