Bchunk is a utility for converting CD image formats, and its vulnerability profile centers on memory-safety issues in its image parsing logic, specifically buffer-boundary violations and NULL-pointer dereferences. Current severity, exploitation activity, and exposure counts are shown alongside this summary.
The number and severity of CVEs published that impact products developed by Bchunk Project over time
Signals from CVEs in this vendor scope (3 CVEs).
3 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2017-15955MEDIUM bchunk (related to BinChunker) 1.2.0 and 1.2.1 is vulnerable to an "Access violation near NULL on destination operand" and crash when processing a malformed CUE (.cue) file. | Oct 28, 2017 | 5.5 | 21 | NO | NO |
CVE-2017-15954MEDIUM bchunk (related to BinChunker) 1.2.0 and 1.2.1 is vulnerable to a heap-based buffer overflow (with a resultant invalid free) and crash when processing a malformed CUE (.cue) file. | Oct 28, 2017 | 5.5 | 21 | NO | NO |
CVE-2017-15953MEDIUM bchunk (related to BinChunker) 1.2.0 and 1.2.1 is vulnerable to a heap-based buffer overflow and crash when processing a malformed CUE (.cue) file. | Oct 28, 2017 | 5.5 | 21 | NO | NO |
Signals from CVEs in this vendor scope (3 CVEs).
An overview of all social media posts that mention a CVE ID that affects a product developed by Bchunk Project.
Media articles that mention a CVE ID that affects a product developed by Bchunk Project — matched by CVE ID, not by vendor name.