CVE-2017-16869

Severity CVSS v4.0:
Pending analysis
Type:
CWE-119 Buffer Errors
Publication date:
17/11/2017
Last modified:
20/04/2025

Description

p_mach.cpp in UPX 3.94 allows remote attackers to cause a denial of service (invalid memory access and application crash) or possibly have unspecified other impact via a crafted Mach-O file, related to canPack and unpack functions. NOTE: the vendor has stated "there is no security implication whatsoever.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:upx:upx:3.94:*:*:*:*:*:*:*