Integer overflow in the read_fragment_table_4 function in unsquash-4.c in Squashfs and sasquatch allows remote attackers to cause a denial of service (application crash) via a crafted input, which triggers a stack-based buffer overflow.
| Software | From | Fixed in |
|---|---|---|
| squashfs_project / squashfs | - | 4.3.x |
| fedoraproject / fedora | 22 | 22.x |
| fedoraproject / fedora | 21 | 21.x |