Package: steghide
Version: 0.5.1
Severity: normal
Tags: security

Dear Maintainer,

I have discovered a stack-based buffer overflow in steghide 0.5.1.
The issue is in src/Embedder.cc where 'sprintf' is used unsafely.

I have published a full analysis and Proof of Concept here:
https://github.com/ErikDervishi03/steghide-buffer-overflow-poc

I have also requested a CVE for this issue.

Best regards,
Erik Dervishi

Reply via email to