CVE-2022-4899

high

Description

A vulnerability was found in zstd v1.4.10, where an attacker can supply empty string as an argument to the command line tool to cause buffer overrun.

References

https://github.com/facebook/zstd/issues/3200

Details

Source: MITRE

Published: 2023-03-31

Updated: 2023-04-07

Type: CWE-400