Vulnerabilities
Vulnerable Software
Gnu:  >> Pspp  >> 1.2.0  Security Vulnerabilities
libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a heap-based buffer overflow in inflate_read (called indirectly from spv_read_xml_member) in zip-reader.c.
CVSS Score
4.5
EPSS Score
0.0
Published
2025-05-10
libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause a heap-based buffer overflow in inflate_read (called indirectly from zip_member_read_all) in zip-reader.c.
CVSS Score
4.5
EPSS Score
0.0
Published
2025-05-10
libpspp-core.a in GNU PSPP through 2.0.1 allows attackers to cause an spvxml-helpers.c spvxml_parse_attributes out-of-bounds read, related to extra content at the end of a document.
CVSS Score
2.9
EPSS Score
0.0
Published
2025-05-10
There is a reachable assertion abort in the function write_long_string_missing_values() in data/sys-file-writer.c in libdata.a in GNU PSPP 1.2.0 that will lead to denial of service.
CVSS Score
6.5
EPSS Score
0.006
Published
2019-02-27
An issue was discovered in PSPP 1.2.0. There is a heap-based buffer overflow at the function read_bytes_internal in utilities/pspp-dump-sav.c, which allows attackers to cause a denial of service (application crash) or possibly have unspecified other impact.
CVSS Score
7.8
EPSS Score
0.002
Published
2018-12-19


Contact Us

Shodan ® - All rights reserved