sidebar_label | title | description | hide_table_of_contents | sidebar_class_name | toc_max_heading_level | tags | ||
---|---|---|---|---|---|---|---|---|
CVE-2019-17543 |
CVE-2019-17543 |
Lifecycle of CVE-2019-17543 |
true |
hide-from-sidebar |
2 |
|
11/7/2024
LZ4 before 1.9.2 has a heap-based buffer overflow in LZ4_write32 (related to LZ4_compress_destSize), affecting applications that call LZ4_compress_fast with a large input. (This issue can also lead to data corruption.) NOTE: the vendor states "only a few specific / uncommon usages of the API are at risk."
Waiting on a fix from third party mongodb vendor
Ongoing
- Palette VerteX airgap 4.4.14
- Palette VerteX 4.5.3, 4.5.8
- Palette Enterprise 4.5.3, 4.5.8
- 1.0 08/16/2024 Initial Publication
- 2.0 08/17/2024 Added Palette VerteX airgap 4.4.14 to Affected Products
- 3.0 10/14/2024 Added Palette VerteX & Palette Enterptise 4.5.3 to Affected Products
- 4.0 11/7/2024 Added Palette VerteX & Palette Enterptise 4.5.8 to Affected Products