CVE-2015-8837: Debian Linux
High severity, CVSS 7.3. EPSS: 2.9% chance of exploitation in the next 30 days.
Stack-based buffer overflow in the isofs_real_readdir function in isofs.c in FuseISO 20070708 allows remote attackers to cause a denial of service (application crash) or possibly execute arbitrary code via a long pathname in an ISO file.
Affected products
- Debian Debian Linux: version 7.0 only; version 8.0 only
- Fedoraproject Fedora: version 16 only; version 17 only
- Fuseiso Project Fuseiso: up to and including 20070708
Published 2016-03-30. Last modified 2026-06-17.