GHSA-pr85-w493-9w3xCriticalCVSS 9.8
resdata has Classic Buffer Overflow, Improper Validation of Array Index, NULL Pointer Dereference and Out-of-bounds Read
🔗 CVE IDs covered (1)
📋 Description
Impact
Prior to version 6.2.9 resdata would not correctly validate input in GRDECL files. The severity rating assumes that resdata is used to parse untrused files in a networking context such as a webservice.
Patches
The bug has been patched starting with version 6.2.9.
🎯 Affected products1
- pip/resdata:< 6.2.9