CVE-2017-15954: Bchunk Project Bchunk
Medium severity, CVSS 5.5. EPSS: 1% chance of exploitation in the next 30 days.
bchunk (related to BinChunker) 1.2.0 and 1.2.1 is vulnerable to a heap-based buffer overflow (with a resultant invalid free) and crash when processing a malformed CUE (.cue) file.
Affected products
- Bchunk Project Bchunk: version 1.2.0 only; version 1.2.1 only
- Debian Debian Linux: version 8.0 only
Published 2017-10-28. Last modified 2026-06-17.