Metrics
Affected Vendors & Products
Wed, 02 Apr 2025 15:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Metrics |
ssvc
|
Tue, 01 Apr 2025 21:15:00 +0000
Type | Values Removed | Values Added |
---|---|---|
Description | A vulnerability was found in ouch-org ouch up to 0.3.1. It has been classified as critical. This affects the function ouch::archive::zip::convert_zip_date_time of the file zip.rs. The manipulation of the argument month leads to memory corruption. The attack needs to be approached locally. The exploit has been disclosed to the public and may be used. Upgrading to version 0.4.0 is able to address this issue. It is recommended to upgrade the affected component. | |
Title | ouch-org ouch zip.rs convert_zip_date_time memory corruption | |
Weaknesses | CWE-119 | |
References |
|
|
Metrics |
cvssV2_0
|

Status: PUBLISHED
Assigner: VulDB
Published: 2025-04-01T21:00:12.923Z
Updated: 2025-04-02T14:09:03.706Z
Reserved: 2025-03-30T17:58:15.284Z
Link: CVE-2024-13941

Updated: 2025-04-02T14:00:57.109Z

Status : Awaiting Analysis
Published: 2025-04-01T21:15:41.807
Modified: 2025-04-02T14:58:07.527
Link: CVE-2024-13941

No data.