CVE-2023-33552: Erofs-Utils Project Erofs-Utils

High severity, CVSS 7.8. EPSS: 0.7% chance of exploitation in the next 30 days.

Heap Buffer Overflow in the erofs_read_one_data function at data.c in erofs-utils v1.6 allows remote attackers to execute arbitrary code via a crafted erofs filesystem image.

Affected products

Published 2023-06-01. Last modified 2026-06-17.